Provides instructions for implementing task-based authorization to control user access through TACACS+ and RADIUS servers. It details updated security practices regarding password and secret encryption, as well as procedures for configuring server groups, authentication methods, and accounting features to enhance system security and management.
AAA can be implemented on NCS 1004 using administrative models of task-based authorization. Implementation involves configuring TACACS+ and RADIUS servers and groups to control user access in the software system.
From Release 24.4.1, the AAA local database supports configuring up to 3000 usernames. Although you can configure more than 3000 users, it may impact the system's scale and performance, which are not assured beyond this limit.
RADIUS security protocol
This topic explains how RADIUS security protocol supports centralized authentication, authorization, and accounting management in distributed networks.
TACACS+ security protocol
This topic explains how TACACS+ security protocol enhances device security by centralizing user authentication, authorization, and accounting.
Deprecation of Type 7 password and Type 5 secret
This topic explains information about the deprecation of Type 7 password and Type 5 secret configurations, including changes in command-line interface (CLI) options, upgrade behavior, and migration paths.