8.Note that there is an option of binding the ACL just created to a network access filter (Figure 7-66). This allows for different ACLs to be applied to different items. We are not using network filtering, so we leave the default (All-AAA-Clients).

Figure 7-66 Binding the ACL

9. Click Submit.

10.Repeat steps 4–9 for the various ACLs to be created. In our example, we only

use Healthy and Quarantine, with Healthy being a permit ip any.

Configuring RADIUS Authorization Components

To do this:

1.Select Shared Profile Components from the main menu.

2.Select RADIUS Authorization Components.

Chapter 7. Network enforcement subsystem implementation

287

Page 305
Image 305
IBM Tivoli and Cisco manual Select Radius Authorization Components, 287