![Avaya ERS 1600 Скачать руководство пользователя страница 40](http://html1.mh-extra.com/html/avaya/ers-1600/ers-1600_technical-configuration-manual_3027950040.webp)
Authentication, Authorization and Accounting (AAA) for ERS and ES
Technical Configuration Guide
40
November 2010
avaya.com
3.2 Feature Operation
During the log on process, the client initiates the authentication session with the
server. After successful authentication, if authorization is enabled, the client
initiates the authorization session with the server. After successful authentication, if
accounting is enabled, the client sends accounting information to the server.
3.2.1 Authentication
TACACS + authentication offers complete control of authentication through log on/password dialog and
response. The authentication session provides username/password functionality.
0
8
31
16
Version
Type
Session ID
Length ...
Version : 0xC0, 0xC1
Type : 0x01 Authentication
0x02 Authorization
0x03 Accounting
Seq_No : Always start with 1
then incremented.
Flags : 0x01unencryption
0x04 Single connection
Packet format
– RFC Draft*
24
(*) The protocol is a draft standard available at:
ftp://ietf.org/internetdrafts/draft-grant-tacacs-02
Length : packet body (without header)
Following information in packet are encrypted with MD5 hashes.
Seq_No
Flags
SERVER
Authentication
Service
CLIENT
AUTHENTICATION
USER login
(Console/Telnet/SSH)
Authentication Start
User, port, rem_addr
Authentication Reply
Pass, fail, getdata,
error, follow
Authentication
Continue
data
Authentication Reply
Pass, fail, getdata,
error, follow