C H A P T E R
5
Configuring
This chapter contains the following sections:
•
Information About Configuring , page 45
•
•
Guidelines and Limitations for , page 48
•
Information About Configuring
The Terminal Access Controller Access Control System Plus () security protocol provides centralized
validation of users attempting to gain access to a Cisco Nexus device. services are maintained in
a database on a daemon typically running on a UNIX or Windows NT workstation. You must
have access to and must configure a server before the configured features on your
Cisco Nexus device are available.
provides for separate authentication, authorization, and accounting facilities. allows
for a single access control server (the daemon) to provide each service (authentication, authorization,
and accounting) independently. Each service is associated with its own database to take advantage of other
services available on that server or on the network, depending on the capabilities of the daemon.
The client/server protocol uses TCP (TCP port 49) for transport requirements. The Cisco Nexus
device provides centralized authentication using the protocol.
Advantages
has the following advantages over RADIUS authentication:
•
Provides independent AAA facilities. For example, the Cisco Nexus device can authorize access without
authenticating.
•
Uses the TCP transport protocol to send data between the AAA client and server, making reliable transfers
with a connection-oriented protocol.
Cisco Nexus 3600 NX-OS Security Configuration Guide, Release 7.x
45
Содержание Nexus 3600 NX-OS
Страница 10: ...Cisco Nexus 3600 NX OS Security Configuration Guide Release 7 x x Contents ...
Страница 20: ...Cisco Nexus 3600 NX OS Security Configuration Guide Release 7 x 6 Overview IP ACLs ...
Страница 42: ...Cisco Nexus 3600 NX OS Security Configuration Guide Release 7 x 28 Configuring AAA Default AAA Settings ...