Configuring Cisco ISE » History » Version 3
Version 2 (Luke Murphey, 12/03/2013 07:23 PM) → Version 3/4 (Luke Murphey, 12/03/2013 07:25 PM)
h1. Configuring ISE
(thanks to Morten Nilsen for these instructions)
First, go to Policy, Policy Elements, Dictionaries
!ISE_Dictionaries.png!
Expand System, Radius and click RADIUS Vendors
!ISE_RADIUS_Vendor.png!
Click Add:
!ISE_Add_Vendor.png!
Enter the dictionary name and vendor ID in the form:
!ISE_Dictionary_Entry.png!
Hit submit
Open the newly created dictionary and select the dictionary attributes tab:
!ISE_Dictionary_Attribute.png!
Click Add again
Enter the attribute name groups and change Direction to OUT and ID of 1
!ISE_Attribute.png!
Hit Submit
Now navigate to policy elements/results
Expand Authorization and select the Authorization Profiles element
!ISE_Auth_Profile.png!
Click Add
Enter a name: name;
!ISE_Auth_Profile_Entry.png!
Under Advanced Attributes Settings, pick the newly created dictionary:
!ISE_Advanced_Attributes.png!
Enter the desired value in the text field:
!ISE_Advanced_Attribute_Settings.png!
You can now use this authorization profile in your authorization policy to grant users access to Splunk.
(thanks to Morten Nilsen for these instructions)
First, go to Policy, Policy Elements, Dictionaries
!ISE_Dictionaries.png!
Expand System, Radius and click RADIUS Vendors
!ISE_RADIUS_Vendor.png!
Click Add:
!ISE_Add_Vendor.png!
Enter the dictionary name and vendor ID in the form:
!ISE_Dictionary_Entry.png!
Hit submit
Open the newly created dictionary and select the dictionary attributes tab:
!ISE_Dictionary_Attribute.png!
Click Add again
Enter the attribute name groups and change Direction to OUT and ID of 1
!ISE_Attribute.png!
Hit Submit
Now navigate to policy elements/results
Expand Authorization and select the Authorization Profiles element
!ISE_Auth_Profile.png!
Click Add
Enter a name: name;
!ISE_Auth_Profile_Entry.png!
Under Advanced Attributes Settings, pick the newly created dictionary:
!ISE_Advanced_Attributes.png!
Enter the desired value in the text field:
!ISE_Advanced_Attribute_Settings.png!
You can now use this authorization profile in your authorization policy to grant users access to Splunk.