07-25-2004 05:48 PM - edited 02-20-2020 11:31 PM
I am creating User Groups in VPN concentrator and I am creating User Accounts in Radius Server. When I create the user accounts, I want to assign to the groups which I have created in VPN concentrator.
How do i go about doing this?
07-29-2004 06:09 AM
I guess you are looking for the doc "Locking Users into a VPN 3000 Concentrator Group Using a RADIUS Server" http://www.cisco.com/en/US/tech/tk583/tk547/technologies_configuration_example09186a00800946a2.shtml
08-01-2004 09:55 PM
Hi,
Thanks anyway, but that not what I was looking for.
Finally we decide to create groups in VPN concentrator and also create the same gropus at the Radius server.
08-31-2004 11:48 AM
You should like you have the answer but here is how I understand it. The ACS user needs to be associated to an ACS group. The two are merge before passing back to Concentrator(no proof). You associate a ACS user to a concentrator group by assigning a particular value to the ACS group attribute.
IETF RADIUS Attributes 25 = "OU='group name';"
The group name needs to match a group name on the concentrator.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide