Re: TACACS+ and RADIUS... Differences in security and kind of working?

From: anedvedicky@tinysoftware.cz
Date: 01/30/02


Date: Wed, 30 Jan 2002 08:21:26 +0100 (CET)
From: <anedvedicky@tinysoftware.cz>
To: DocValde <DocValde@gmx.de>

TACACS = Terminal Access Controller Access Control System (RFC 1492)
RADIUS = Rmote Authentication Dial-In User Service (RFC 2138)

both provides AAA = Authentication Authorization Accounting

TACACS uses TCP for data transport. Whole stream is encrypted. TACACS is
independent on AAA architecture, can cooperate with kerberos.

RADIUS uses UDP for data transport. Only password is encrypted.

Security aspects of both are unknown for me, try bugtraq on securityfocus.

sasha


Quantcast