CCNP ISCW Notes1 Apr 2008
Chapter 20: Using AAA to Scale Access ControlAAAAuthentication, Authorization, and Accounting (AAA) has two access modes:
TACACS+Developed by Cisco, defined in RFC 1492. TACACS+ uses TCP. TACACS+ allows for encryption of the entire packet body. TACACS+ separates authentication and authorization, allowing a different backend to be used for each. TACACS+ has better multiprotocol support than RADIUS. Only TACACS+ provides command-specific authorization. Configuration example:
RADIUSDefined in RFC 2865 RADIUS uses UDP. RADIUS only encrypts passwords within an access-request packet. RADIUS combines authentication and authorization. Configuration example:
Debugging
|
Navigation
Armory
Online Toolbox
|
One of the best summary I have seen. It make life easier and time well spent. Good job. Gerard
nice work