cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
817
Views
5
Helpful
4
Replies

How to Limit ACS Groups to Specific AAA Clients

N3t W0rK3r
Level 3
Level 3

I have several groups of users defined in ACS but I cannot figure out how to go about specifying which network devices (AAA clients) these groups can log into.

We use our ACS primarily to authenticate IT staff who need access to our routers, switches and APs.

Thanks in advance.

John

4 Replies 4

Jagdeep Gambhir
Level 10
Level 10

You need to use feature called network access restrictions (NAR). Here is the link ,

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.1/user/SPC.html#wp697095

Regards,

~JG

Do rate helpful posts

That's perfect, but I do not see the option for NAR on my Shared Profile Components page. I'm running ACS 3.3 on an appliance.

Thanks.

You can ignore that last post... I found where I need to add it.

Thanks again.

Hi, I'm having the same problem, even else we have the NAR it is mandatory to configure the client's IP address of end client who is accessing the AAA client and I would linke to restrict only the AAA client, did you get it this way?

Thanks.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: