cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
439
Views
0
Helpful
1
Replies

NAM Access Roles via ACS

STEFFEN NEUSER
Level 4
Level 4

Hello,

We need a working HowTo to create Read-Only User for NAM (v4.1) controlled by ACS. ACS- Password integration is working, but all ACS-Users will entering with full permissions into the NAM, we doesnt want.

We tried the procedure found in the online help and slightly different found in this forum, but both doesnt work:

In ACS: Set ---Per Group Command Authorization--then select permit and under command tab type web and under this permit the following commands

deny accountmgmt
deny system
permit capture
deny alarm
permit collection
permit view

Is there a minimum version of ACS a requirement for doing this kind of access roles?

thx for hints, Steffen

1 Reply 1

Joe Clarke
Cisco Employee
Cisco Employee

The NAM works with ACS up to 4.2.  ACS 5.0 is not supported as it was not tested, and has substantial changes.  It appears that patch

5-1-0-44-2 may re-add NAM support (to ACS 5.1), but this has not been verified.