If I want to assign different levels of privilege ( super user , read only user ) for different user group
(support and admin group)
How can I do this ?
How can I create group and assign users ( admin and support )
- Auth Agent
- Authentication Agent
- Community Thread
- Forum Thread
- RSA SecurID
- RSA SecurID Access
in the /opt/rsa/am/radius directory are a pile of .dct files, those are the pre-installed radius directories. You can also make your own .dct in the syntax style of 'Pulse Secure Steel Belted Radius'.
Edward Davis wrote:
Multiple profiles can be done by creating logon aliases, and assigning the profile to the alias name, and assigning the group to an agent.
Example. My name is zaz, this is my authentication settings screen lower section...
zaz is a member of two groups, moon and aliasgrp.
zaz has two aliases, zaz2, and frisky, assigned to group.
Whichever agent I have group restriction set for [aliasgrp], I can log in as zaz or zaz2.
if I log in as ZAZ, I get ADVA profile assigned. ADVA is my default profile.
If I log in somewhere else as ZAZ2, I will get the profile assigned to my alias name which is CISCO AV_PAIR.
So, I will need to use different login ID's on each device, but it is always user ZAZ doing all the authentication, and the profile will change based on what userid I used to login...my real userid or one of my aliases with a different profile.
You said "Multiple profiles can be done by creating logon aliases, and assigning the profile to the alias name, and assigning the group to an agent." assigning group to agent .
I did not find this option under agents . Can you please guide