Chapter 6 Setting Up and Managing User Groups
Configuration-specific User Group Settings
6-36
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
To specify device-management application command authorization for a user
group, follow these steps:
Step 1 In the navigation bar, click Group Setup.
Result: The Group Setup Select page opens.
Step 2 From the Group list, select a group, and then click Edit Settings.
Result: The Group Settings page displays the name of the group at its top.
Step 3 From the Jump To list at the top of the page, choose TACACS+.
Result: The system displays the TACACS+ Settings table section.
Step 4 Use the vertical scrollbar to scroll to the device-management application feature
area, where device-management application is the name of the applicable Cisco
device-management application.
Step 5 To prevent the application of any command authorization set for the applicable
device-management application, select the None option.
Step 6 To assign a particular command authorization set that affects device-management
application actions on any network device, follow these steps:
a. Select the Assign a device-management application for any network device
option.
b. Then, from the list directly below that option, select the command
authorization set you want applied to this group.
Step 7 To create associations that assign a particular command authorization set that
affects device-management application actions on a particular NDG, for each
association, follow these steps:
a. Select the Assign a device-management application on a per Network Device
Group Basis option.
b. Select a Device Group and a corresponding device-management
application.
c. Click Add Association.
Result: The associated NDG and command authorization set appear in the
table.