Types of Authentication Methods

Cisco routers support a “local database.” The local database is nothing more than configuration entries that are stored in the configuration file in nonvolatile RAM (NVRAM). You can use the local database with AAA services to authenticate users, authorize users, and also account for the user's activities.

However, you do not have to use the router's local database; you can use an external AAA service for authentication, authorization, and accounting.

TACACS+ and RADIUS Protocols

Cisco uses two protocols with AAA services, TACACS+ and RADIUS. You can run both protocols simultaneously if you want, or you can run either TACACS+ or RADIUS.

Get SECUR Exam Cram™ 2 (Exam 642-501) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.