cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1582
Views
4
Helpful
2
Replies

is ACS internal authentication encrypted

hazemelebiary
Level 1
Level 1

Is the ACS authentication in its local database encrypted or not?

I mean if you are not using any  TACACAS , AAA  or active directory server  with ACS ,use its internal database  what are authentication types and are they encrypted?

Please send me document showing the answer 

 

2 Replies 2

Ganesh Hariharan
VIP Alumni
VIP Alumni

Hello,

Check out the below link 

https://supportforums.cisco.com/discussion/11394191/whats-type-acs-v42-database-password-hash

The above thread shows that password in ACS internal database are ecrypted.

Hope that Helps..

-GI

Rate if it Helps.

  •  Thanks for the reply.
  • However  i need to know the algorithm such as : Encryption algorithm must be at least AES/128 (AES/256 recommended)
  • If password is stored as hashed, it should be at least SHA-1 (SHA-2 recommended).

The link you sent us is for ACS 4.2 .I  need to know  about ACS 5.5 .

For ACS 4.2  I have the below details for internal database:

http://www.cisco.com/c/en/us/td/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4-2/user/guide/ACS4_2UG/UsrDb.html#wp353486

About the ACS Internal Database

For users who are authenticated by using the ACS internal database, ACS stores user passwords in a database which is protected by an administration password and encrypted by using the AES 128 algorithm. For users who are authenticated with external user databases, ACS does not store passwords in the ACS internal database.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: