I'm crazy with this version of ACS, it is totally diferent than ACS 4.2, which is familiar for me and seems to difficult to config for me.
Although I have red a lot of post about problems with the integration WCS 7.0 and ACS 5.2 using TACACs+ for admin or lobby access to the web portal I can't do login into WCS as Lobbyambassador using ACS 5.2 because always show me the error "User has no usergroups assigned".
Steps I followed:
- I create a "shell profile" with the custom attributes of the group "lobby ambassador".
- In default device admin / authorization, I create a rule matching this "shell profile".
I see lot os Hit counts and passed in logs, but the message written previously.
In ACS 4.2 I had to create the custom attribute "HTTP" and string "Wireless-WCS" to work with, but now I don't know if it is necessary and I don't know how to do it.
I needed to add the attribute for the virtual domain in which the user is in, in this case, I was using root domain, I suppose this is the reason that WCS told me "User has no usergroups assigned", because it is no assigned to any virtual domain.