1-9
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Chapter 1 Overview of Cisco Secure ACS
AAA Server Functions and Concepts
• Novell NetWare Directory Services (NDS)
• Open Database Connectivity (ODBC)-compliant relational databases
• CRYPTOCard token server
• SafeWord token server
• PassGo token server
• RSA SecureID token server
• ActivCard token server
• Vasco token server
In addition to the token servers listed above, Cisco Secure ACS supports any
token server that provides a RADIUS server interface. For more information
about token server support, see Token Server User Databases, page 11-57.
Authentication Protocol-Database Compatibility
The various password protocols supported by Cisco Secure ACS for
authentication are supported unevenly by the various databases supported by
Cisco Secure ACS. Table 1-2 on page 1-9 provides a reference of the password
protocols supported by the various databases. For more information about the
password protocols supported by Cisco Secure ACS, see Passwords, page 1-10.
Table 1-2 Authentication Protocol and User Database Compatibility
Database ASCII PAP CHAP ARAP
MS-
CHAP
v.1
MS-
CHAP
v.2 LEAP
EAP
-MD5
EAP
-TLS
PEAP
(EAP-
GTC)
Cisco Secure ACS Yes Yes Yes Yes Yes Yes Yes Yes Yes No
Windows SAM Yes Yes No No Yes Yes Yes No No Yes
Windows AD Yes Yes No No Yes Yes Yes No Yes Yes
LDAP Yes Yes No No No No No No Yes Yes
Novell NDS Yes Yes No No No No No No No Yes
ODBC Yes Yes Yes Yes Yes Yes Yes Yes No Yes
LEAP Proxy
RADIUS Server
Yes Yes No No Yes Yes Yes No No No