Download Print this page

Configure Tacacs/Aaa Login Prompts - Cisco MARS Install And Setup Manual

Advertisement

Chapter 5
Initial MARS Appliance Configuration
In the Email field, enter the e-mail alias to be used for this account ...
Step 3
Update any other information as needed.
Step 4
Click Submit.
Step 5

Configure TACACS/AAA Login Prompts

By default, MARS knows what the default device login prompt looks like. When attempting to connect
to a reporting device or mitigation device, MARS validates the prompt to avoid login failures. However,
if you use a TACACS-based AAA server to manage the administrative access to your reporting devices
and mitigation devices, you must describe the login prompts for username and password so that MARS
can recognize them.
Many servers provide the ability to develop custom prompts to avoid providing information about the
devices on their networks. This technique, known as security through obscurity, allows you to hide the
specifics about network devices from hackers and others. The value of this technique is that it is more
difficult to identify the device type and operating system version, which are used to identify weaknesses
of a given device. Using a custom prompt makes all devices appear to be the same, and since it is custom,
it is more difficult to probe with automated device recognition tools.
To specify your TACACS/AAA prompt settings, follow these steps:
Select Admin > System Parameters > TACACS/AAA Server Prompts.
Step 1
OL-14672-01
Completing the Configuration using MARS web interface
Install and Setup Guide for Cisco Security MARS
5-17

Advertisement

loading