06.05.2013 Views

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 8 System Configuration: Advanced<br />

OL-14386-02<br />

RDBMS Synchronization<br />

Note For specific in<strong>for</strong>mation about all actions that RDBMS Synchronization can per<strong>for</strong>m, see Appendix E,<br />

“RDBMS Synchronization Import Definitions.”<br />

<strong>User</strong> Groups Related Actions <strong>for</strong> RDBMS Synchronization<br />

Among the group-related configuration actions that RDBMS Synchronization can per<strong>for</strong>m are:<br />

Setting Max Sessions parameters.<br />

Setting network usage quota parameters.<br />

Configuring command authorizations.<br />

Configuring network access restrictions.<br />

Configuring time-of-day/day-of-week access restrictions.<br />

Specifying outbound RADIUS attribute values.<br />

Specifying outbound TACACS+ attribute values.<br />

Note For specific in<strong>for</strong>mation about all actions that RDBMS Synchronization can per<strong>for</strong>m, see Appendix E,<br />

“RDBMS Synchronization Import Definitions.”<br />

Creating, Updating and Deleting dACLs <strong>for</strong> <strong>User</strong> and <strong>User</strong> Groups<br />

This section describes the various RDBMS Synchronization tasks that you can per<strong>for</strong>m <strong>for</strong> users and<br />

user groups.<br />

To per<strong>for</strong>m these tasks:<br />

Step 1 In the navigation bar, click System Configuration.<br />

Step 2 Click RDBMS Synchronization.<br />

The RDBMS Synchronization Setup page appears.<br />

Note If this feature does not appear, click Interface Configuration > Advanced Options, then check<br />

RDBMS Synchronization.<br />

Step 3 Click the <strong>User</strong>-Level Downloadable ACLs option to enable the functionality of the action codes.<br />

Step 4 click the Group-Level Downloadable ACLs option to specify the Group Name to which the dACL<br />

needs to be assigned.<br />

Step 5 Run the csdbsync -syncnow command or click Synchronize Now option to invoke RDBMS<br />

Synchronization.<br />

Note Be<strong>for</strong>e invoking RDBMS Synchronization, the Account Action Codes must be specified in the CSV file<br />

or ODBC database.<br />

ACS processes the action codes that are specified in the CSV file and per<strong>for</strong>ms RDBMS<br />

Synchronization. See Action Codes <strong>for</strong> dACL Attributes, page E-27 <strong>for</strong> more in<strong>for</strong>mation.<br />

<strong>User</strong> <strong>Guide</strong> <strong>for</strong> <strong>Cisco</strong> <strong>Secure</strong> <strong>Access</strong> <strong>Control</strong> <strong>Server</strong> 4.2<br />

8-21

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!