Details the configuration and implementation of various external authentication protocols including RADIUS, TACACS+, LDAP, and modern multi-factor authentication methods for secure user access management.
Overview RADIUS, TACACS+, LDAP
Describes step-by-step instructions for enabling RADIUS, TACACS+, LDAP, RSA, DUO, SAML, and OAuth 2 users to access the APIC.
User IDs in the APIC bash shell
Explains how user IDs are generated and managed for Linux shell access on the APIC.
AV pairs on external authentication servers
Explains the Cisco AV pair configuration on external authentication servers that specifies required RBAC roles and privileges for users.
Remote users
Describes users who authenticate through external authentication providers instead of local user configuration.
Create a provider
Create an external authentication provider for Cisco APIC.
Login domains
Describes the authentication domain mechanism that enables users to select the correct authentication method when accessing the system.
RADIUS authentication
Explains a networking protocol that provides centralized authentication, authorization, and accounting management for network users.
TACACS+ authentication
Describes a remote AAA protocol that provides authentication, authorization, and accounting services for network devices.
LDAP/Active directory authentication
Describes an authentication method that allows network elements to retrieve AAA credentials from directory services for user authentication and authorization.
Multi-factor authentication with DUO
Describes a security mechanism that provides second factor authentication on top of an organization's existing primary authentication system.
RSA secure ID authentication
Describes RSA Secure ID authentication and its token-based password creation capabilities.
SAML authentication
Explains an XML-based authentication protocol that enables single sign-on access across multiple Cisco collaboration applications through trusted identity providers.
OAuth 2 / OIDC authentication
Explains an open-standard authorization protocol that allows access to applications through trusted identity providers using authorization tokens.