Differences Between Hwtacacs And Radius; Basic Message Exchange Process Of Hwtacacs - 3Com 4510G Configuration Manual

3com switch 4510g family
Table of Contents

Advertisement

Differences Between HWTACACS and RADIUS

HWTACACS and RADIUS have many common features, like implementing AAA, using a client/server
model, using shared keys for user information security and having good flexibility and extensibility.
Meanwhile, they also have differences, as listed in
Table 1-3 Primary differences between HWTACACS and RADIUS
Uses TCP, providing more reliable network
transmission.
Encrypts the entire packet except for the
HWTACACS header.
Protocol packets are complicated and
authorization is independent of authentication.
Authentication and authorization can be
deployed on different HWTACACS servers.
Supports authorized use of configuration
commands. For example, an authenticated login
user can be authorized to configure the device.

Basic Message Exchange Process of HWTACACS

The following takes a Telnet user as an example to describe how HWTACACS performs user
authentication, authorization, and accounting.
process of HWTACACS.
HWTACACS
Table
1-3.
Uses UDP, providing higher transport efficiency.
Encrypts only the user password field in an
authentication packet.
Protocol packets are simple and authorization is
combined with authentication.
Does not support authorized use of
configuration commands.
Figure 1-6
illustrates the basic message exchange
1-8
RADIUS

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents