cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
21014
Views
15
Helpful
4
Replies

Free AAA or TACACS+ Server for Windows

thisishusamm
Level 1
Level 1

Dear All,

Hope you are doing well.

Kindly can Anyone Guide me to download and install AAA Server (TACACS+ or RAUDIS) for free to my network. I have 100 Switches(MLS) in my network.

 

Thanks in advanced.

Husam Al-Rubaye.

2 Accepted Solutions

Accepted Solutions

balaji.bandi
Hall of Fame
Hall of Fame

You can try windows NPAS

 

https://integratingit.wordpress.com/2011/11/06/configuring-role-based-cli-interface-access-2/

 

FreeRadius : (you can try this) - not tested - i have used in Linux freeradius good product and opensource - required some effort.

 

http://www.winradius.eu/

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

Just keep in mind that NPS is RADIUS only so no T+, and it has a few limitations. For example:

1) EAP-MD5 is deprecated there, though can be enabled with registry tinkering (for now)

2) It doesn't support Cisco IP phone LSC's. 

3) Doesn't replicate between other NPS instances

View solution in original post

4 Replies 4

balaji.bandi
Hall of Fame
Hall of Fame

You can try windows NPAS

 

https://integratingit.wordpress.com/2011/11/06/configuring-role-based-cli-interface-access-2/

 

FreeRadius : (you can try this) - not tested - i have used in Linux freeradius good product and opensource - required some effort.

 

http://www.winradius.eu/

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Just keep in mind that NPS is RADIUS only so no T+, and it has a few limitations. For example:

1) EAP-MD5 is deprecated there, though can be enabled with registry tinkering (for now)

2) It doesn't support Cisco IP phone LSC's. 

3) Doesn't replicate between other NPS instances

Thanks dear for that information.
So, do you recommend me to use tacacs+ in my network? Which tacacs is free and can use it in windows server.

Haven't ever used a free T+ server, but here's one from a quick google search:

https://www.tacacs.net/download/ 

 

Use T+ if you need an authorization policy in a centralized server, or for a few other security related reasons. If you need to just authenticate who can access a device, RADIUS is enough.

https://www.cisco.com/c/en/us/support/docs/security-vpn/remote-authentication-dial-user-service-radius/13838-10.html