06.05.2013 Views

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Posture Validation Pages Reference<br />

Table 13-11 External Posture Validation <strong>Server</strong>s Page<br />

Add/Edit External Posture Validation <strong>Server</strong> Page<br />

13-34<br />

<strong>User</strong> <strong>Guide</strong> <strong>for</strong> <strong>Cisco</strong> <strong>Secure</strong> <strong>Access</strong> <strong>Control</strong> <strong>Server</strong> 4.2<br />

Chapter 13 Posture Validation<br />

Option Description<br />

Name Opens the Add/Edit External Posture Validation <strong>Server</strong> page <strong>for</strong> editing of an existing<br />

policy. Description, Forward Credential Type, and <strong>Server</strong> Details show the current<br />

configuration of the policy.<br />

Add <strong>Server</strong> Opens the Add/Edit External Posture Validation <strong>Server</strong> page <strong>for</strong> creation of a new policy.<br />

Use this page to add or edit external posture validation servers.<br />

To display the Add/Edit External Posture Validation <strong>Server</strong> page, choose Posture Validation > External<br />

Posture Validation Setup. Then click Add <strong>Server</strong> to add a server or click to edit a<br />

server.<br />

Table 13-12 Add/Edit External Posture Validation <strong>Server</strong> Page<br />

Option Description<br />

Name Specifies the name by which to identify the server.<br />

The name can contain up to 32 characters. Leading and trailing spaces are not allowed.<br />

Names cannot contain the left bracket ([), the right bracket (]), the comma (,), or the slash<br />

(/).<br />

Description Specifies a text description of the server, up to 255 characters. For each profile using the<br />

policy, the text you type in the Description box appears beside the policy. In the<br />

Description box you can add the details that you could not convey in the name of the<br />

policy. For example, you could describe its purpose or summarize its rules.<br />

Because you can apply the same policy to more than one profile, a useful description<br />

could also help prevent accidental configuration errors when someone modifies a policy<br />

without understanding which profiles use it.<br />

Primary <strong>Server</strong> Configuration Enables a primary NAC server (and an optional secondary NAC server). ACS relies on<br />

Secondary <strong>Server</strong> Configuration these servers to apply the policy and configure the set of credential types that ACS<br />

<strong>for</strong>wards.<br />

For each posture validation request to which an external policy is applied, ACS attempts<br />

to use the first enabled server configuration in the policy that is enabled. If the first<br />

enabled server is the primary server and ACS cannot reach the primary server or the<br />

primary server fails to respond to the request, ACS will use the secondary server, if it is<br />

configured and enabled.<br />

OL-14386-02

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!