Specifications
7-27
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 7 User Management: Configuring Authentication Servers
Adding an Authentication Provider
Allow All function. For example, you can require users to supply a contact phone number and birth date
before they are allowed to access the network as a guest user. The identifier a user submits in the login
page appears in the Online Users and User Management > Local Users > Guest Users pages while the
user is logged in.
Note You can only configure one “Guest” Auth Server type in the Cisco NAC Appliance system at a time.
To configure a Guest authentication server type:
Step 1 Go to User Management > Auth Servers > New.
Step 2 From the Authentication Type dropdown menu, choose Guest.
Figure 7-18 Guest Auth Server Type
Step 3
Provider Name—Type a unique name for this authentication provider. Enter a meaningful or
recognizable name if web login users will be able to select providers from the web login page.
Step 4 Default Role—Choose the user role assigned to guest users authenticated by this provider. This default
role is used if not overridden by a role assignment based on MAC address or IP address. The default
value is 30 days.
Step 5 Max Token Validity (in days)—Enter the number of days a guest user account remains valid in the NAC
Appliance system. The default value is 7 days.
Step 6 Remove Invalid Guest Users After (in days)—Once a guest user account has been “Invalid” for the
specified number of days, the NAC Appliance system reserves the right to remove that guest user account
from the NAC Appliance system database.
Tip If your NAC Appliance system provides guest access to a very large number of different guest users on
a regular basis, you might want to consider changing the Remove Invalid Guest Users After (in days)
setting to a smaller number to help minimize the number of invalid/legacy user IDs in the database.
Step 7 Description—Enter an optional description of this guest authentication server for reference.
Step 8 Click Add Server.