02-13-2016 11:24 PM - edited 03-10-2019 11:29 PM
Hi,
We have ACS 5.2...its already configured.. but i want to know first summary flow & then in detail how can b done it ..
1. Creating username & club all username under one group;
2. adding devices & club all devices under diff group.
3.mapping group of users to specific group of devices.
4.then creating group of authorization, providing rights to user groups.
5.how to give rights say read only, full, specific commands etc to authorize group.
how to map it with users then
6.last how to set accounting for users; can i set accounting for specific users/groups??
First i want to know the order of steps in flow; then want to understand each thing in detail.
i got confused by diff words i.e. ndg group, identity group, shell..etc..; i want to know for each step what term or feature is in ACS.
please guide me...
02-15-2016 09:55 AM
Hi Frndz,
Plz help me...
02-15-2016 10:11 AM
5. you have to configured policy elements based on what protocol you're using. Once you have created shell-profile or network authorization, you can map it inside the access-policies.
6. You cannot set accounting per users/groups - this needs to be configured per device in the network you have like router / switches / firewalls
~ Jatin
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide