Cisco Systems CSACS3415K9 Computer Accessories User Manual


 
Contents
xx
User Guide for Cisco Secure Access Control System 5.4
OL-26225-01
Session Access Requests (Device Administration [TACACS+]) A-2
Command Authorization Requests A-2
Network Access (RADIUS With and Without EAP) A-2
RADIUS-Based Flow Without EAP Authentication A-3
RADIUS-Based Flows with EAP Authentication A-3
Access Protocols—TACACS+ and RADIUS A-5
Overview of TACACS+ A-5
Overview of RADIUS A-6
RADIUS VSAs A-6
ACS 5.4 as the AAA Server A-7
RADIUS Attribute Support in ACS 5.4 A-8
RADIUS Attribute Rewrite Operation A-9
RADIUS Access Requests A-11
APPENDIX
B Authentication in ACS 5.4 B-1
Authentication Considerations B-1
Authentication and User Databases B-1
PAP B-2
RADIUS PAP Authentication B-3
EAP B-3
EAP-MD5 B-5
Overview of EAP-MD5 B-5
EAP- MD5 Flow in ACS 5.4 B-5
EAP-TLS B-5
Overview of EAP-TLS B-6
User Certificate Authentication B-6
PKI Authentication B-7
PKI Credentials B-8
PKI Usage B-8
Fixed Management Certificates B-9
Importing Trust Certificates B-9
Acquiring Local Certificates B-9
Importing the ACS Server Certificate B-10
Initial Self-Signed Certificate Generation B-10
Certificate Generation B-10
Exporting Credentials B-11
Credentials Distribution B-12
Hardware Replacement and Certificates B-12
Securing the Cryptographic Sensitive Material B-12