Operation Manual – AAA
H3C S3100 Series Ethernet Switches
Chapter 1 AAA Overview
1-9
II. Basic message exchange procedure in HWTACACS
The following text takes telnet user as an example to describe how HWTACACS
implements authentication, authorization, and accounting for a user.
Figure 1-6
illustrates the basic message exchange procedure:
Figure 1-6
AAA implementation procedure for a telnet user
The basic message exchange procedure is as follows:
1)
A user sends a login request to the switch acting as a TACACS client, which then
sends an authentication start request to the TACACS server.
2)
The TACACS server returns an authentication response, asking for the username.
Upon receiving the response, the TACACS client requests the user for the
username.