Radius and Tacacs Flashcards
What is RADIUS (remote authentication Dial-in User Service
It’s an open standard and uses UDP ports (1812,1813, 1645,1646) it centralizes the Triple A’s (authentication, authorization, accounting (auditing))
Radius components
Access Clients, Radius clients, and radius server. The user is the access client, the dial up server VPN servers and 802.1X compliant AP routers. You send a access request and the raidus clients send a radius message to the radius server and the server sends a radius challenge which then your password answers and the radius server performs a triple A
What is TACACs?
It is cisco proprietary and separates the AAA roles to different devices and uses a TCP and encryption
What is the difference between UDP and TCP?
UDP is a contactless connection protocol so less security and TCP is a contact authentication protocol authorize the user.
What is the difference between TACACS and TACACS+
TACACS only encrypts the password and TACACS+ encrypts the whole message and uses a lot more infrastructure