Chapter 6
Setting Up and Managing User Groups
Step 6
Step 7
Configuring a Shell Command Authorization Set for a User Group
Note
Step 1
Step 2
78-14696-01, Version 3.1
To save the group settings you have just made, click Submit.
For more information, see
To continue specifying other group settings, perform other procedures in this
chapter, as applicable.
Use this procedure to specify the shell command authorization set parameters for
a group. There are four options:
•
None—No authorization for shell commands.
Assign a Shell Command Authorization Set for any network device—One
•
shell command authorization set is assigned, and it applies to all network
devices.
•
Assign a Shell Command Authorization Set on a per Network Device
Group Basis—Enables you to associate particular shell command
authorization sets to be effective on particular NDGs.
Per Group Command Authorization—Enables you to permit or deny
•
specific Cisco IOS commands and arguments at the group level.
This feature requires that you have previously configured a shell command
authorization set. For detailed steps, see
Configuration, page
5-16.
To specify shell command authorization set parameters for a user group, follow
these steps:
In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Configuration-specific User Group Settings
Saving Changes to User Group Settings, page
Command Authorization Sets
User Guide for Cisco Secure ACS for Windows Server
6-53.
6-31