- AAA Refers to a variety of common security features.
- AAA: Authentication, Authorization & Accounting
- The strongest authentication method to protect CLI are:
- TACACS+
- RADIUS server
- The Cisco Secure Access Control Server (ACS)
- It is a cisco systems software product
- It can be installed on unix, linux & several windows platforms.
- It holds a set of usernames & passwords used for authentication
- Routers & Switches send Usernames & passwords from users are sent to server in encrypted manner.
- RADIUSTACACS+Scope of Encryption: Packet payload or just the passwordPassword onlyEntire PayloadLayer 4 ProtocolUDPTCPWell-known Port/IOS default port used for authentication1812/164549/49Standard or CISCO ProprietaryRFC 2865Proprietary