<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco Secure ACS vs Windows IAS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770580#M420226</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks to all for the replies. They were both very helpfull. I have decided to run an evaluation into the suitability of using Windows IAS for authentication of VPN users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Of course id love to implement ACS but i cannot justify the exepnse (at present).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 02 Jul 2007 10:16:27 GMT</pubDate>
    <dc:creator>serotonin888</dc:creator>
    <dc:date>2007-07-02T10:16:27Z</dc:date>
    <item>
      <title>Cisco Secure ACS vs Windows IAS</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770577#M420218</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I need to deploy an AAA solution for the following situations.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) Remote access via Cisco VPN Clients.&lt;/P&gt;&lt;P&gt;2) AAA for wireless windows PC's in remote locations&lt;/P&gt;&lt;P&gt;3) AAA for Cisco switches and Routers in remote locations&lt;/P&gt;&lt;P&gt;4) Authentication against a windows domain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The Windows IAS solution would be virtually free as we already have Windows 2003 domain controllers at each remote site. However, Cisco Secure ACS could also be an option. Does any ne have experience in both of these?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What are the positives\negatives of each? and limitations?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Does anyone have any informatin on case studys etc comparing the two?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your help is greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kind Regards,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PS: There is a limitation in Windows 2003 Standard edition that limits the number of Radius clients to 50. Although we have more than 50 potential clients in the company, no site has more than 50 in total.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:14:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770577#M420218</guid>
      <dc:creator>serotonin888</dc:creator>
      <dc:date>2019-03-10T22:14:17Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Secure ACS vs Windows IAS</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770578#M420219</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is a Comparison of TACACS and Radius. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/univercd/cc/td/doc/cisintwk/intsolns/secsols/aaasols/c262c1.htm" target="_blank"&gt;http://www.cisco.com/univercd/cc/td/doc/cisintwk/intsolns/secsols/aaasols/c262c1.htm&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have used both. The mose convenient in the past for me was RADIUS. This was because users could authenticate via AD and new accounts would not have to be created and additional software purchase was not required. TACACS is more secure and can finer control over cisco device authorization and accounting. RADIUS is probably the easiest to setup and deploy if you have existing servers in place. If you have more than one server you could configure redundancy. Again less cost for user authentication. For asset management I would use TACACS because of the authorization features not given by RADIUS.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 24 Jun 2007 21:12:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770578#M420219</guid>
      <dc:creator>JBDanford2002</dc:creator>
      <dc:date>2007-06-24T21:12:02Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Secure ACS vs Windows IAS</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770579#M420224</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;with MS IAS you can implement solution only using RADIUS protocol&lt;/P&gt;&lt;P&gt;ACS will provide you functionality to use RADIUS as well as TACACS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking at the 4 solutions you want to implement, only 3rd solution will be a bit easier using TACACS, but again that it not something which you cannot implement using Radius.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;About the Radius client limitation, ACS provides you a big database which you can use for clients, so limitation of 50 clients. Plus a lot many features you will love to incorporate in your network like NAP/NAC implementation made easier.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So you have to check if you have the required budget you can go for ACS, else IAS can work well for all the solutions (except radius client limitation, which I m sure MS can provide you some workaround).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;following link can help you with sales information of ACS:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://wwwin-nmbu.cisco.com/thevault/files/1027/5/ACS4.1-Sales-Guide%20April%204%202007.htm" target="_blank"&gt;http://wwwin-nmbu.cisco.com/thevault/files/1027/5/ACS4.1-Sales-Guide%20April%204%202007.htm&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Jun 2007 11:22:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770579#M420224</guid>
      <dc:creator>rochopra</dc:creator>
      <dc:date>2007-06-25T11:22:49Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco Secure ACS vs Windows IAS</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770580#M420226</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks to all for the replies. They were both very helpfull. I have decided to run an evaluation into the suitability of using Windows IAS for authentication of VPN users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Of course id love to implement ACS but i cannot justify the exepnse (at present).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Andy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Jul 2007 10:16:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-secure-acs-vs-windows-ias/m-p/770580#M420226</guid>
      <dc:creator>serotonin888</dc:creator>
      <dc:date>2007-07-02T10:16:27Z</dc:date>
    </item>
  </channel>
</rss>

