<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS. 802.1x, Tacacs and Radius in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788616#M409239</link>
    <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;I think i have a simple question: I wan't do activate 802.1x on our siwtches(about 800 devices: 6500,3500,3600,4500,...). We use for telnet Tacacs for authentication,authorization and accounting. For 802.1x i need to configure raidius on the switches. So my question is: Can i run Radius and Tacacs &lt;/P&gt;&lt;P&gt;for the same device or do i have to cahnge the telnet-authenticatoin/authorization to Radius. In the NetworkDeviceGroup configuration on ACS4.1 i can only define Tacacs or Radius for the authentication type for one device.&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 22:20:06 GMT</pubDate>
    <dc:creator>dbelno</dc:creator>
    <dc:date>2019-03-10T22:20:06Z</dc:date>
    <item>
      <title>ACS. 802.1x, Tacacs and Radius</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788616#M409239</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;I think i have a simple question: I wan't do activate 802.1x on our siwtches(about 800 devices: 6500,3500,3600,4500,...). We use for telnet Tacacs for authentication,authorization and accounting. For 802.1x i need to configure raidius on the switches. So my question is: Can i run Radius and Tacacs &lt;/P&gt;&lt;P&gt;for the same device or do i have to cahnge the telnet-authenticatoin/authorization to Radius. In the NetworkDeviceGroup configuration on ACS4.1 i can only define Tacacs or Radius for the authentication type for one device.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:20:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788616#M409239</guid>
      <dc:creator>dbelno</dc:creator>
      <dc:date>2019-03-10T22:20:06Z</dc:date>
    </item>
    <item>
      <title>Re: ACS. 802.1x, Tacacs and Radius</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788617#M409240</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes you can run RADIUS and TACACS+ in parallel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the ACS network config db you need to enter each device twice - once for each protocol.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Aug 2007 08:33:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788617#M409240</guid>
      <dc:creator>darpotter</dc:creator>
      <dc:date>2007-08-16T08:33:11Z</dc:date>
    </item>
    <item>
      <title>Re: ACS. 802.1x, Tacacs and Radius</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788618#M409241</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;TACACS+ is better recomended, due to better accounting, authorization and the ENCRYPTION it uses for communication, where as RADIUS is plain/clear text algorithm.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since you are using TELNET which is total clear text, then using TACACS provides you some security through its encyption., I would prefer TACACS over RADIUS Since you have all Cisco based network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Aug 2007 16:29:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788618#M409241</guid>
      <dc:creator>fawadnoorkhan</dc:creator>
      <dc:date>2007-08-16T16:29:43Z</dc:date>
    </item>
    <item>
      <title>Re: ACS. 802.1x, Tacacs and Radius</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788619#M409242</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hallo &lt;/P&gt;&lt;P&gt;I know, this is the reason why i am useing tacacs. But can i use Tacacs in combination with 802.1x and/or NAC??&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2007 05:31:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788619#M409242</guid>
      <dc:creator>dbelno</dc:creator>
      <dc:date>2007-08-17T05:31:30Z</dc:date>
    </item>
    <item>
      <title>Re: ACS. 802.1x, Tacacs and Radius</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788620#M409243</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No you cant use TACACS+ for NAC and 802.1x.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;...and NAC over RADIUS *IS* encrypted. The entire exchange occurs inside a tunnel which just happens to be carried over RADIUS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;EAP-FAST/EAP-PEAP both use encrypted tunnels for their protocols.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;T+ is still king for device admin or any network service that uses/needs good/flexible authorisation. For everything else there's RADIUS.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2007 12:45:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-802-1x-tacacs-and-radius/m-p/788620#M409243</guid>
      <dc:creator>darpotter</dc:creator>
      <dc:date>2007-08-17T12:45:59Z</dc:date>
    </item>
  </channel>
</rss>

