cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
431
Views
0
Helpful
2
Replies

Understand n configuring AAA in ACS 5.X

s4sandyad
Level 1
Level 1

Hi,

We have ACS 5.2...its already configured.. but i want to know first summary flow & then in detail how can b done it ..

1. Creating username & club all username under one group;

2. adding devices & club all devices under diff group.

3.mapping group of users to specific group of devices.

4.then creating group of authorization, providing rights to user groups.

5.how to give rights say read only, full, specific commands etc to authorize group.

   how to map it with users then

6.last how to set accounting for users; can i set accounting for specific users/groups??

First i want to know the order of steps in flow; then want to understand each thing in detail.

i got confused by diff words i.e. ndg group, identity group, shell..etc..; i want to know for each step what term or feature is in ACS.

please guide me...

2 Replies 2

s4sandyad
Level 1
Level 1

Hi Frndz,

Plz help me...

Jatin Katyal
Cisco Employee
Cisco Employee

5. you have to configured policy elements based on what protocol you're using. Once you have created shell-profile or network authorization, you can map it inside the access-policies.

6. You cannot set accounting per users/groups - this needs to be configured per device in the network you have like router / switches / firewalls

ACS / AAA Glossary

~ Jatin

~Jatin