Cisco Acs 5x User Guide
Here you can view all the pages of manual Cisco Acs 5x User Guide. The Cisco manuals for Control System are available online for free. You can easily download all the documents as PDF.
Page 31
1-5 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 1 Introducing ACS 5.3 Hardware Models Supported by ACS For information about using the CLI, see the Command Line Interface Reference Guide for Cisco Secure Access Control System 5.3. Related Topic ACS Web-based Interface, page 1-4 ACS Programmatic Interfaces ACS 5.3 provides web services and command-line interface (CLI) commands that allow software developers and system integrators to programmatically access some ACS...
Page 32
1-6 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 1 Introducing ACS 5.3 Hardware Models Supported by ACS
Page 33
CH A P T E R 2-1 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 2 Migrating from ACS 4.x to ACS 5.3 ACS 4.x stores policy and authentication information, such as TACACS+ command sets, in the user and user group records. In ACS 5.3, policy and authentication information are independent shared components that you use as building blocks when you configure policies. The most efficient way to make optimal use of the new policy model is to rebuild policies by using the building blocks, or...
Page 34
2-2 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Overview of the Migration Process Overview of the Migration Process The Migration utility completes the data migration process in two phases: Analysis and Export Import In the Analysis and Export phase, you identify the objects that you want to export into 5.3. The Migration utility analyses the objects, consolidates the data, and exports it. After the Analysis and Export phase is...
Page 35
2-3 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Before You Begin NoteYou must install the latest patch for the supported migration versions listed here. Also, if you have any other version of ACS 4.x installed, you must upgrade to one of the supported versions and install the latest patch for that version before you can migrate to ACS 5.3. Before You Begin Before you migrate data from ACS 4.x to ACS 5.3, ensure that you: Check for...
Page 36
2-4 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Migrating from ACS 4.x to ACS 5.3 User-Defined Fields (from the Interface Configuration section) User Groups Shared Shell Command Authorization Sets User TACACS+ Shell Exec Attributes (migrated to user attributes) Group TACACS+ Shell Exec Attributes (migrated to shell profiles) User TACACS+ Command Authorization Sets Group TACACS+ Command Authorization Sets Shared, Downloadable ACLs...
Page 37
2-5 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Functionality Mapping from ACS 4.x to ACS 5.3 Functionality Mapping from ACS 4.x to ACS 5.3 In ACS 5.3, you define authorizations, shell profiles, attributes, and other policy elements as independent, reusable objects, and not as part of the user or group definition. Ta b l e 2 - 1 describes where you configure identities, network resources, and policy elements in ACS 5.3. Use this...
Page 38
2-6 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Functionality Mapping from ACS 4.x to ACS 5.3 Command sets (command authorization sets)One of the following: Shared Profile Components > Command Authorization Set User Setup page Group Setup pagePolicy Elements > Authorization and Permissions > Device Administration > Command Set See Creating, Duplicating, and Editing Command Sets for Device Administration, page 9-28.You can...
Page 39
2-7 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Common Scenarios in Migration Common Scenarios in Migration The following are some of the common scenarios that you encounter while migrating to ACS 5.3: Migrating from ACS 4.2 on CSACS 1120 to ACS 5.3, page 2-7 Migrating from ACS 3.x to ACS 5.3, page 2-8 Migrating Data from Other AAA Servers to ACS 5.3, page 2-8 Migrating from ACS 4.2 on CSACS 1120 to ACS 5.3 In your deployment, if...
Page 40
2-8 User Guide for Cisco Secure Access Control System 5.3 OL-24201-01 Chapter 2 Migrating from ACS 4.x to ACS 5.3 Common Scenarios in Migration Migrating from ACS 3.x to ACS 5.3 If you have ACS 3.x deployed in your environment, you cannot directly migrate to ACS 5.3. You must do the following: Step 1Upgrade to a migration-supported version of ACS 4.x. See Supported Migration Versions, page 2-2 for a list of supported migration versions. Step 2Check the upgrade paths for ACS 3.x: For the ACS...