Advanced User Authentication Settings
Step 1
Step 2
Step 3
Step 4
Setting Cisco Aironet RADIUS Parameters for a User
User Guide for Cisco Secure ACS for Windows Server
7-40
Cisco IOS RADIUS represents only the Cisco IOS VSAs. You must configure
both the IETF RADIUS and Cisco IOS RADIUS attributes.
To configure and enable Cisco IOS RADIUS attributes to be applied as an
authorization for the current user, follow these steps:
Perform Step 1 through Step 3 of
Result: The User Setup Edit page opens. The username being added or edited is
at the top of the page.
Before configuring Cisco IOS RADIUS attributes, be sure your IETF RADIUS
attributes are configured properly. For more information about setting IETF
RADIUS attributes, see
In the Cisco IOS/PIX RADIUS Attributes table, to specify the attributes to be
authorized for the user, follow these steps:
a.
Select the [009\001] cisco-av-pair attribute check box.
Type the commands (such as TACACS+ commands) to be packed as a
b.
RADIUS VSA.
Continue to select and define attributes, as applicable.
c.
Do one of the following:
If you are finished configuring the user account options, click Submit to
•
record the options.
•
To continue to specify the user account options, perform other procedures in
this chapter, as applicable.
The Cisco Aironet RADIUS parameters appear only if all the following are true:
A AAA client has been configured to use RADIUS (Cisco Aironet) in
•
Network Configuration.
•
The Per-user TACACS+/RADIUS Attributes check box is selected under
Advanced Options in the Interface Configuration section.
•
User-level RADIUS (Cisco Aironet) attribute has been enabled under
RADIUS (Cisco Aironet) in the Interface Configuration section.
Chapter 7
Adding a Basic User Account, page
Setting IETF RADIUS Parameters for a User, page
Setting Up and Managing User Accounts
78-14696-01, Version 3.1
7-5.
7-38.