Link to home
Start Free TrialLog in
Avatar of diegomirner
diegomirnerFlag for Switzerland

asked on

Tacas + vs Radius deploy advise

Dear Experts,

Im in my way to deploy Cisco AAA ACS server but I need your help to decide if I should go for Tacas+ or not.

I need to provide a centralize AAA service for all intranet devices , wifi autentication and so on.

thanks in advance.
ASKER CERTIFIED SOLUTION
Avatar of Istvan Kalmar
Istvan Kalmar
Flag of Hungary image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
IT boils down to how much control you need.

With Radius its a simple yes know answer from the Server, authorised on username and password. So its much like moving the local login data base over to a central server. But you cant for instance set up on the server side what privlage level a user will have on the Radius server. you have to set up the access level on the switch/router, and just use the Radius server to authentice if the user uses the correct password.


however with a TACACS+ server you are able to get much more granular, Ie you can configure on the server what individual commands the users have.

SO TACACS give you much more central control but it is Propriority so you have to pay.
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of diegomirner

ASKER

Thanks a lot , I will go for Radius First.
Could you please provide any easy wa to stat guide please.
Thnaks in advance to all of you.