Implementing AAA in Cisco IOS Flashcards
What is most likely used for authentication of a network administrator accessing the CLI of a Cisco router?
TACACS, ACS
What allows for granular control related to authorization of specific Cisco IOS commands that are being attempted by an authenticated and authorized Cisco router admin?
TACACS
Which devices or users would be clients of an ACS server?
Router, Switch
On the router, what should be created and applied to a vty line to enforce a specific set of methods for identifying who a user is?
Authorization method list
What is the minimum size for an effective TACACS group of servers?
1
With what can you configure AAA on the router?
CCP, CLI
Which statement is true for ACS 5.x and later?
Authorization policies can be associated with user groups that are accessing specific network device groups.
Where in the ACS do you go to create a new group of administrators?
Users and Identity Stores > Identity Groups
From the router, which method tests the most about the ACS configuration, without forcing you to log in again at the router?
test aaa
What could likely cause an ACS authentication failure, even when the user is using the correct credentials?
Incorrect secret on ACS, Incorrect IP address of the ACS server on the router, incorrect routing, incorrect filtering between the ACS and router