AAA

  1. The CiscoSecure Access Control Server (CSACS) is available on UNIX and Windows platforms. It provides a network with AAA capabilities. A Java-based Web tool allows multiple administrators.

  2. AAA stands for authentication, authorization, and accounting.

  3. CSACS has three components: client, server, and database.

  4. Terminal Access Controller Access Control System (TACACS+) is a Cisco-proprietary protocol for use with the CSACS. It uses TCP/IP, encrypts all data, and allows multiple levels of authorization, and it can use other methods of authentication such as Kerberos.

  5. Remote Authentication Dial-In User Service (RADIUS) is an open Internet Engineering Task Force (IETF) standard. It uses User Datagram Protocol (UDP) and encrypts only passwords. It also combines authentication and authorization as a single service; they are not separated as with TACACS+.

  6. In packet mode, also known as interface mode, the data passes through the router from one network to another through such ports as async, Basic Rate Interface (BRI), Primary Rate Interface (PRI), serial, and dialer interfaces.

  7. In character mode or line mode, the data is destined to the router to a TTY, VTY, aux, or con port, most likely for configuration and maintenance reasons.

  8. When you turn on authentication using the default group, it is applied to all interfaces.



CCNP BCRAN Remote Access Exam Cram 2 (Exam Cram 640 - XXX)
CCNP BCRAN Remote Access Exam Cram 2 (Exam Cram 640 - XXX)
ISBN: N/A
EAN: N/A
Year: 2003
Pages: 183

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net