08-13-2011 12:07 PM - edited 11-18-2020 02:54 AM
There are various options and possibilities when WCS users authenticate with ACS, not all combinations are explained in this document. However by reading one example, you should understand all the mechanisms to modify the example yourself to the precise configuration you want to achieve.
It should give you this screen:-
Let’s go and configure those attributes in ACS.
The way to enter the attributes is usually a source of confusion. As an example, to enter those attributes, we had to:-
Etc… for the other attributes.
In ACS 4, it was possible to copy/paste the list of attributes from the WCS GUI to the ACS 4 GUI. They have to be entered one by one on ACS 5 and this can take some time. The future releases of ACS 5 will try to tackle this problem.
Having just a shell profile configured will not do the trick. We need more steps:-
2. In “Access policies”, under Default Device Admin->Authorization, we configured a rule to match WCS authentication :
If the username belongs to WCS-users group, then we will return the “wcs” shell profile (which contains all the attributes we configured).
3. In case you want to configure other types of users like administrators, you will need another shell profile returning different attributes. From there on, you need to group administrators in a different group in order to differentiate and know what shell profile to return.
Cisco Wireless Control System Configuration Guide, Release 7.0
Nic,
I have an Cisco acs appliance 1120 (running acs 5.0) that is no longer booting.
The error during booting is attached. Kindly confirm if this is hardware problem
and what I can do to remedy the problem
Thanks
Please post your questions as "discussions" in the forum and not as comments to a document. Moreover if that document is totally not related to your problem.
Thanks
Amazing Nico... thanks for sharing!!
Hi Nico
We have ACS 5.3 and WCS 7.0 I have added all the attributes for admin from WCS to Sheel profile. I am creating rule using active directory group and when I try to login to WCS using my AD and gett error message about user is not in user groups and not any task assigned. Can you please help us out?
Thanks in advance
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: