cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
362
Views
0
Helpful
1
Replies

Attributes addtion to authenticate with Diffrent AD users on ACS 4.2

ajay chauhan
Level 7
Level 7

Hi,

I am using Wireless AP and users on this AP being authenticated by TACACS using AD accounts.This is a common scenario for world wide location.

Once users are authenticated by AD they get the access for Wireless network.

I want to add one more AP under same group but want to control access ..so thinking to create one more group on AD where users are added those need wireless access.I get to know i will have to add some attributes on this AP which is part of same group during authentication it will ignore the 1st AD group and will go to the 2nd AD group.

Please let me know if someone implemented something like this.

Thanks

Ajay

1 Reply 1

andamani
Cisco Employee
Cisco Employee

Hi Ajay,

From the requirement you mentioned, i undertsand that you want to control the Access of the wireless users connecting via this new AP. Please let me know if i understood the problem correctly.

If yes, then i think you can do so by configuring NAR on the ACS.The following link will give you details of the same:

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_white_paper09186a00801a8fd0.shtml#wp39274

How to configure NAR on ACS:

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_tech_note09186a0080858d3c.shtml

Regards,

Anisha

P.S.: Please mark this thread as answered if you feel your query is answered.