cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
339
Views
10
Helpful
1
Replies

device restrictions in ACS 5.3

Jonn cos
Level 4
Level 4

Hi all,

In our scenario, easy vpn users are being authenticated by acs 5.3 successfully. We have created seperate user group for these users. The issue is, these users are also able to access our routers using their username/password. I want to restrict this particular group so that its not able to access any device.

Pls guide me

1 Reply 1

maldehne
Cisco Employee
Cisco Employee

You can add a RULE in the authorization policy allowing only users in that particular identity group to access the device providing VPN service , and you need to make sure that there is no hit for users in that particular group.

So you customize the conditions and add the identity group as part of the game.

-----------------------------------------------------------------------------------

please make sure to rate correct answers