Cisco Servers User Manual page 165

For windows 2000/nt servers
Table of Contents

Advertisement

Chapter 6
Setting Up and Managing User Groups
Step 4
To define and apply a NAR, for this particular user group, that permits or denies
this group's access based on IP address, or IP address and port, follow these steps:
You should define most NARs from within the Shared Components section so
Tip
that the restrictions can be applied to more than one group or user. For more
information, see the
section on page
a.
b.
c.
d.
Step 5
To permit or deny this user group's access based on calling location or values
other than an established IP address, follow these steps:
a.
b.
c.
78-13751-01, Version 3.0
"Shared Network Access Restrictions Configuration"
5-7.
In the Network Access Restrictions table, select the Define IP-based access
restrictions check box.
To specify whether the subsequent listing specifies permitted or denied IP
addresses, from the Table Defines list, select either Permitted Calling/Point
of Access Locations or Denied Calling/Point of Access Locations.
Select or enter the information in the following boxes:
AAA Client—Select either All AAA Clients or the name of the NDG or
the name of the individual AAA client to which to permit or deny access.
Port—Type the number of the port to which to permit or deny access.
You can use the wildcard asterisk (*) to permit or deny access to all ports
on the selected AAA client.
Address—Type the IP address or addresses to filter on when performing
access restrictions. You can use the wildcard asterisk (*).
Click Enter.
Result: The specified the AAA client, port, and address information appears
in the NAR Access Control list.
Select the Define CLI/DNIS-based access restrictions check box.
To specify whether the subsequent listing specifies permitted or denied
values, from the Table Defines list, select one of the following:
Permitted Calling/Point of Access Locations
Denied Calling/Point of Access Locations
From the AAA Client list, select either All AAA Clients or the name of the
NDG or the name of the particular AAA client to which to permit or deny
access.
Cisco Secure ACS 3.0 for Windows 2000/NT Servers User Guide
Common User Group Settings
6-9

Advertisement

Table of Contents
loading

This manual is also suitable for:

Secure acs 3.0

Table of Contents