beautypg.com

Cisco 3.3 User Manual

Page 239

background image

6-49

User Guide for Cisco Secure ACS for Windows Server

78-16592-01

Chapter 6 User Group Management

Configuration-specific User Group Settings

Note

The MS-CHAP-MPPE-Keys attribute value is autogenerated by
Cisco Secure ACS; there is no value to set in the HTML interface.

Step 6

To save the group settings you have just made, click Submit.

For more information, see

Saving Changes to User Group Settings, page 6-56

.

Step 7

To continue specifying other group settings, perform other procedures in this
chapter, as applicable.

Configuring Nortel RADIUS Settings for a User Group

The Nortel RADIUS attribute configurations appear only when both the following
are true:

A network device has been configured in Network Configuration that uses a
RADIUS protocol that supports the Nortel RADIUS VSA.

Group-level Nortel RADIUS attributes have been enabled on the RADIUS
(Nortel) page of the Interface Configuration section.

Nortel RADIUS represents only the Nortel VSA. You must configure both the
IETF RADIUS and Nortel RADIUS attributes.

Note

To hide or display Nortel RADIUS attributes, see

Setting Protocol Configuration

Options for Non-IETF RADIUS Attributes, page 3-17

. A VSA applied as an

authorization to a particular group persists, even when you remove or replace the
associated AAA client; however, if you have no AAA clients of this (vendor) type
configured, the VSA settings do not appear in the group configuration interface.

To configure and enable Nortel RADIUS attributes to be applied as an
authorization for each user in the current group, follow these steps:

Step 1

Confirm that your IETF RADIUS attributes are configured properly.

For more information about setting IETF RADIUS attributes, see

Configuring

IETF RADIUS Settings for a User Group, page 6-38

.