06-14-2014 06:38 PM - edited 03-10-2019 09:47 PM
We are planning to implement TACACS+ server.
I need to know what exactly I need to implement that server? do I need to buy TACACS+ vendor based appliance or I can just buy the software and install it on one of my existing or new server. is there any very good open source software that I can use ? what pros and cons of each options?
I'm Managing hundreds of routers and switches on our company and on customer sites through internet.
one last question : is Cisco ACS 5.5 hardware-based or can be installed in any server?
I know it is very long question(s) but I know you are very supportive and nice people :)
Solved! Go to Solution.
06-14-2014 07:38 PM
1.] Most large Enterprise or Carrier-class network device manufacturers support TACACS. Some vendors that support the TACACS+ protocol are: Adtran, Alcatel/Lucent, Arbor, Aruba, Brocade/Foundry, Cisco/Linksys, Ericsson/Redback, Extreme, Fortinet, HP/3Com, Huawei, Juniper, Netgear, Nortel, and others. However I'd personally suggest ACS 5.x
Source - http://tacacs.net/faq.asp
2.] Cisco Secure ACS 5.5 is available as a closed and hardened Linux-based SNS 3415/3495 appliance or as a software operating system image for VMware ESX/ESXi 5.0/5.1.
Cisco Secure ACS 5.5 supports two distinct protocols for authentication, authorization, and accounting (AAA): RADIUS for network access control and TACACS+ for network device access control.
3.] For more information on product and license, you should go through the below listed links.
Regards,
Jatin Katyal
**Do rate helpful posts**
06-14-2014 07:37 PM
Hi Ibrahim,
All you need is a Tacacs server and configure all your router and switches to authenticate through this server.
Being a cisco guy my suggestion is to go with Cisco ACS 5.5 box. You can get this as appliance (dedicated hardware) or as a software which can be installed on virtual ESXi environment.
Also please be aware the Tacacs is a cisco properitary protocol and hence only cisco devices will be able to authenticate using this protocol.
Hope that helps.
Regards
Najaf
Please rate useful answers !!!
06-14-2014 07:38 PM
1.] Most large Enterprise or Carrier-class network device manufacturers support TACACS. Some vendors that support the TACACS+ protocol are: Adtran, Alcatel/Lucent, Arbor, Aruba, Brocade/Foundry, Cisco/Linksys, Ericsson/Redback, Extreme, Fortinet, HP/3Com, Huawei, Juniper, Netgear, Nortel, and others. However I'd personally suggest ACS 5.x
Source - http://tacacs.net/faq.asp
2.] Cisco Secure ACS 5.5 is available as a closed and hardened Linux-based SNS 3415/3495 appliance or as a software operating system image for VMware ESX/ESXi 5.0/5.1.
Cisco Secure ACS 5.5 supports two distinct protocols for authentication, authorization, and accounting (AAA): RADIUS for network access control and TACACS+ for network device access control.
3.] For more information on product and license, you should go through the below listed links.
Regards,
Jatin Katyal
**Do rate helpful posts**
06-15-2014 12:38 AM
Thank you guys for your helpful information.
Is there any other inexpensive product or open source software ?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide