beautypg.com

Cisco 3.3 User Manual

Page 816

background image

Appendix F RDBMS Synchronization Import Definitions

Action Codes

F-30

User Guide for Cisco Secure ACS for Windows Server

78-16592-01

351

DEL_UDV

V1

Removes the vendor with the IETF code specified in
V1 and any defined VSAs.

Note

Action code 351 does not remove any
instances of VSAs assigned to Cisco Secure
ACS groups or users. If Cisco Secure ACS has
AAA clients configured with the UDV
specified in V1, the delete operation fails.

352

ADD_VSA

VN, V1,
V2, V3

Adds a new VSA to the vendor specified by the
vendor IETF code in V1.

VN is the VSA name. If the vendor name is MyCo and
the attribute is assigned a group ID, we recommend
prefixing the vendor name or an abbreviation to all
VSAs. For example, VSAs could be
“MyCo-Assigned-Group-Id”.

Note

VSA names must be unique to both the vendor
and to the Cisco Secure ACS dictionary. For
example, “MyCo-Framed-IP-Address” is
allowed but “Framed-IP-Address” is not,
because “Framed-IP-Address” is used by
IETF action code 8 in the RADIUS attributes.

V2 is the VSA number. This must be in the 0-255
range.

V3 is the VSA type as one of following values:

INTEGER

STRING

IPADDR

By default, VSAs are assumed to be outbound (or
authorization) attributes. If the VSA is either
multi-instance or used in accounting messages, use
SET_VSA_PROFILE (Action code 353).

Table F-6

Action Codes for Modifying Network Configuration (continued)

Action
Code

Name

Required

Description