CCNP SCOR: AAA, what exactly does this refer to?
-
Wouldn't a username and password stored on a local device be AAA? Or is when someone says AAA, they are referring to a dedicated server that handles it? Such as Active Directory, TACAS+, RADIUS, Kerberos?
-
@Andrew-Kelsey,
"Triple A" security is technically called "new-model" security--it's a security framework. In the past Cisco devices only required a "password" to access the device administratively.The new model--AAA refers to Authentication, Authorization and Accounting which really requires at a minimum "Username/Password" combo that is stored. Ideally, it would be RADIUS or TACACS+ which are the 2 that are built into the IOS to support. Now with EAP it can also be any of the others, with a bit of configuration to help.
Though many demonstrate it to do a local username/password store. This is a "meets the requirement" way of doing so and not a great way to do so but will work. The others that you mention require some setup beyond the Cisco device to make it work.
-
Thanks, Ronnie.