<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic TACACS+ vs. RADIUS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361038#M432754</link>
    <description>&lt;P&gt;My textbooks don't seem to agree on this one issue. One of my textbooks say that you have to use TACACS+ for some features like cut-through proxy or virtual http, where another says you can use RADIUS for any AAA implementation. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could someone tell me when TACACS+ is required and RADIUS is not supported? CSACS seems like an unnecessary expense when RADIUS is free.&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:00:03 GMT</pubDate>
    <dc:creator>r-lemaster</dc:creator>
    <dc:date>2019-03-10T21:00:03Z</dc:date>
    <item>
      <title>TACACS+ vs. RADIUS</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361038#M432754</link>
      <description>&lt;P&gt;My textbooks don't seem to agree on this one issue. One of my textbooks say that you have to use TACACS+ for some features like cut-through proxy or virtual http, where another says you can use RADIUS for any AAA implementation. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could someone tell me when TACACS+ is required and RADIUS is not supported? CSACS seems like an unnecessary expense when RADIUS is free.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:00:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361038#M432754</guid>
      <dc:creator>r-lemaster</dc:creator>
      <dc:date>2019-03-10T21:00:03Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS+ vs. RADIUS</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361039#M432755</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The main things Radius can't do is command authorization and accounting.  This is a limitation of the Radius protocol where all authentication and authorization are combined, so there's no way to have a Radius device send off command requests after the initial user authentication has taken place.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not sure what you mean by "virtual http", but you can certainly do it for "cut-through proxy", assuming by this you mean have the PIX authenticate users before their traffic can pass through.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Feb 2005 04:13:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361039#M432755</guid>
      <dc:creator>gfullage</dc:creator>
      <dc:date>2005-02-02T04:13:13Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS+ vs. RADIUS</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361040#M432756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you for your reply. (Cut-through proxy AKA authentication proxy, AKA downloadable ACLs, depending on your reading materials). I don't know other terms for virtual http/telnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I was wondering if there any specific features that Cisco requires the use of TACACS+ and RADIUS isn't supported. I'd just like to avoid the unnecessary expense if RADIUS is supported for these functions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm not talking about accounting or the differences between RADIUS or TACACS+, just the general function of authentication through PIX or routers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Man, this site is slow.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 02 Feb 2005 12:37:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-vs-radius/m-p/361040#M432756</guid>
      <dc:creator>r-lemaster</dc:creator>
      <dc:date>2005-02-02T12:37:40Z</dc:date>
    </item>
  </channel>
</rss>

