Huawei Quidway S5600 Series Operation Manual page 539

Hide thumbs Also See for Quidway S5600 Series:
Table of Contents

Advertisement

Operation Manual – AAA & RADIUS & HWTACACS & EAD
Quidway S5600 Series Ethernet Switches-Release 1510
Dial-up user
Dial-up user
Dial-up user
Dial-up user
Figure 1-5 Network diagram for a typical HWTACACS application
II. Basic message exchange procedure in HWTACACS
For example, use HWTACACS to implement authentication, authorization, and
accounting for a telnet user. Figure 1-6 illustrates the basic message exchange
procedure:
User
User
Request User for the user name
Request User for the user name
User enters the user name
User enters the user name
Request User for the password
Request User for the password
User enters the password
User enters the password
User is permitted
User is permitted
Figure 1-6 The AAA implementation procedure for a telnet user
Terminal user
Terminal user
Terminal user
Terminal user
ISDN/PSTN
ISDN /PSTN
ISDN/PSTN
ISDN /PSTN
HWTACACS
HWTACACS
Client
Client
User logs in
User logs in
User quits
User quits
Huawei Technologies Proprietary
1-9
Chapter 1 AAA & RADIUS & HWTACACS
HWTACACS client
HWTACACS client
HWTACACS client
HWTACACS client
Authentication Start Request packet
Authentication Start Request packet
Authentication response packet,
Authentication response packet,
requesting for the user name
requesting for the user name
Authentication continuance packet
Authentication continuance packet
carrying the user name
carrying the user name
Authentication response packet,
Authentication response packet,
requesting for the password
requesting for the password
Authentication continuance packet
Authentication continuance packet
carrying the password
carrying the password
Authentication success packet
Authentication success packet
Authorization request packet
Authorization request packet
Authorization success packet
Authorization success packet
Accounting start request packet
Accounting start request packet
Accounting start response packet
Accounting start response packet
Accounting stop packet
Accounting stop packet
Accounting stop response packet
Accounting stop response packet
Configuration
TACACS server
TACACS server
TACACS server
TACACS server
129 .7.66.66
129 .7.66.66
129 .7.66.66
129 .7.66.66
TACACS server
TACACS server
TACACS server
TACACS server
129 .7.66.67
129 .7.66.67
129 .7.66.67
129 .7.66.67
HWTACACS
HWTACACS
Server
Server

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents