Header
Home | Set as homepage | Add to favorites
  Search the Site     » Advanced Search
Sections
Syndication


Blogroll:

||||| ALL Cisco-Network ARTICLES |||||  
CCIE Journey,
The CCIE Journey,


Configure Shared Profile Components

Aug 12,2009 by alperen

image

Configure Shared Profile Components

The Shared Profile Components section enables administrators to develop and name reusable, shared sets of authorization components, which might be applied to one or more users, or groups of users, and referenced by the assigned name within their profiles. These include network access restrictions (NARs), command authorization sets, and downloadable PIX ACLs.

  • NARs enable the administrator to define additional authorization conditions that must be met before a user can gain access to the network.

  • Command authorization sets provide a central mechanism to control the authorization of each command on each network device.

  • Downloadable PIX ACLs enable the creation of an ACL once, in Cisco Secure ACS, and then load that ACL to any number of PIX firewalls that authenticate using the Cisco IOS/PIX protocol.

These shared profile components enhance the scalability of the selective authorization feature. Shared profile components, once configured, can be applied to many users or groups, and they eliminate having to configure the authorization explicitly for each user group for each possible command on each possible device.


175 times read

Related news

» Device Command Sets (DCS)
by alperen posted on Jul 20,2009
» Command-Level Authorization
by alperen posted on Feb 06,2010
» Restricting Command Access
by admin posted on Jul 21,2008
» Downloadable ACLs
by alperen posted on Feb 04,2010
» Authorization
by alperen posted on Jul 14,2009
Did you enjoy this article?
(total 0 votes)

comment Comments (0 posted) 

More Top News
CCSP-Cisco Certified Security Professional
Most Popular
Most Commented
Featured Author