Specifications

14-47
Cisco NAC Appliance - Clean Access Manager Configuration Guide
OL-28003-01
Chapter 14 Administering the CAM
Admin Users
Click the Delete icon next to the file name to remove the log file.
Note You can upload a maximum of five Agent Logs files to the CAM. When you upload the sixth file, the
first file is automatically removed.
Admin Users
This section describes how to add multiple administrator users in the Administration > Admin Users
module of the CAM web admin console.
Under Administration > Admin Users there are three tabs: Admin Groups, Admin Users, and Access
Restrictions.
You can create new admin users and associate them to pre-existing default admin groups, or you can
create your own custom admin groups. In either case, the access permissions defined for the admin group
are applied to admin users when you add those users to the group.
You can also choose to authenticate admin user credentials entered in both the CAM and CAS via an
external Kerberos, LDAP, or RADIUS authentication server (configured using the instructions in Adding
an Authentication Provider, page 7-4), or using the local CAM database. See Add an Admin User,
page 14-51 for details.
Admin Groups
There are three default (uneditable) admin groups in the system, and one predefined custom group
(“Help Desk”) that you can edit. In addition, you can also create any number of your own custom admin
groups under Administration > Admin Users > Admin Groups > New.
The four default admin group types are:
1. Hidden
2. Read-Only
3. Add-Edit
4. Full-Control (has delete permissions)
The three default admin group types cannot be removed or edited. You can add users to one of the three
pre-defined groups, or you can configure a new Custom group to create specialized permissions. When
creating custom admin permissions, create and set access permissions for the custom admin group first,
then add users to that group to set their permissions.
Add/Edit a Custom Admin Group
To create a new admin group:
Step 1 Go to Administration > Admin Users > Admin Groups.