Specifications

Chapter 4 Managing GSS User Accounts Through a TACACS+ Server
Configuring a TACACS+ Server for Use with the GSS
4-12
Cisco Global Site Selector Administration Guide
OL-5480-01
Configuring Primary GSSM GUI Privilege Level Authorization from the TACACS+
Server
You can configure the Cisco Secure ACS TACACS+ server to define the privilege
level (role) of a user when accessing the primary GSSM GUI. The primary GSSM
GUI learns the user’s associated privilege level when communicating with the
TACACS+ server. This capability provides the TACACS+ administrator with the
flexibility to dynamically change a user’s privilege level without requiring that the
user terminate a GUI session and log back in to the primary GSSM. If you
configure the TACACS+ server to allow all commands, the user is automatically
set to administrator and has all associated privileges.
Refer to the “Privilege Levels for Using the Primary GSSM GUI” section in
Chapter 3, Creating and Managing User Accounts, for background on the three
user privilege levels.
Note Primary GSSM GUI privileges assigned to a user from the TACACS+ server
override the user privilege level defined from the primary GSSM GUI GSSM User
Administration details page.