7-35
User Guide for Cisco Secure ACS for Windows Server
78-16592-01
Chapter 7 User Management
Advanced User Authentication Settings
Step 4 If you selected Define Max Privilege on a per-Network Device Group Basis in
Step 2, perform the following steps to define the privilege levels on each NDG, as
applicable:
a. From the Device Group list, select a device group.
Note You must have already configured a device group for it to be listed.
b. From the Privilege list, select a privilege level to associate with the selected
device group.
c. Click Add Association.
An entry appears in the table, associating the device group with a particular
privilege level.
d. Repeat Step a through Step c for each device group you want to associate to
this user.
Tip To delete an entry, select the entry and then click Remove Associate.
Step 5 Do one of the following:
• If you are finished configuring the user account options, click Submit to
record the options.
• To continue to specify the user account options, perform other procedures in
this chapter, as applicable.
Setting TACACS+ Enable Password Options for a User
When setting the TACACS+ Enable Password Options for a user, you have three
options to chose from:
• Use CiscoSecure PAP password.
• Use external database password.
• Use separate password.