Introduction:
This document helps in achieving intigration between Junioer Netscreen and ACS 5.2.
Problem:
Do the vsys and privilege attribute are required to be added seperately or together?
Solution:
The advice is to add it to the group as follows:
ervice = netscreen {
vsys = root
privilege = read-write
}
This problem can be fixed by making different device groups and shell profiles mapped to different authorization profiles.
Setup for juniper:
Step 1:
![image 1.png](/legacyfs/online/legacy/2/7/4/157472-image%201.png)
Step 2:
![image 2.png](/legacyfs/online/legacy/3/7/4/157473-image%202.png)
Source Discussion:
ACS 5.2 - Adding Custom Attributes for Juniper Netscreen TACACS+ Authentication