Component | RADIUS | TACACS+ |
Protocol and Ports | Cisco: UDP Port 1645 (Authentication/Authorisation) UDP Port 1646 (Accounting) Industry Standard: UDP Port 1812 (Authentication/Authorisation) UDP Port 1813 (Accounting) | TCP Port 49 |
Encryption | Encrypts the password field Supports EAP for 802.1x authentication | Encrypts entire payload Does not support EAP |
Authentication and Authorisation | Combines authentication and authorisation Cannot be used to authorise individual CLI commands | Separates authentication and authorisation Can be used for individual CLI command authorisation |
Accounting | Does not support network device CLI accounting | Support network device CLI command accounting |
Primary Use | Secure Network Access | Network Device Access Control |
Comparison of RADIUS and TACACS+
by
Tags:
Leave a Reply