6-31
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
Step 6 To save the group settings you have just made, click Submit.
For more information, see Saving Changes to User Group Settings, page 6-53.
Step 7 To continue specifying other group settings, perform other procedures in this
chapter, as applicable.
Configuring a Shell Command Authorization Set for a User Group
Use this procedure to specify the shell command authorization set parameters for
a group. There are four options:
• None—No authorization for shell commands.
• Assign a Shell Command Authorization Set for any network device—One
shell command authorization set is assigned, and it applies to all network
devices.
• Assign a Shell Command Authorization Set on a per Network Device
Group Basis—Enables you to associate particular shell command
authorization sets to be effective on particular NDGs.
• Per Group Command Authorization—Enables you to permit or deny
specific Cisco IOS commands and arguments at the group level.
Note This feature requires that you have previously configured a shell command
authorization set. For detailed steps, see Command Authorization Sets
Configuration, page 5-16.
To specify shell command authorization set parameters for a user group, follow
these steps:
Step 1 In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2 From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.