EasyManuals Logo

Cisco ASA Series User Manual

Cisco ASA Series
2164 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #847 background imageLoading...
Page #847 background image
CHAPTER
1-1
Cisco ASA Series CLI Configuration Guide
1
Configuring AAA Servers and the Local
Database
This chapter describes support for authentication, authorization, and accounting (AAA, pronounced
“triple A”), and how to configure AAA servers and the local database.
The chapter includes the following sections:
Information About AAA, page 1-1
Licensing Requirements for AAA Servers, page 1-10
Guidelines and Limitations, page 1-10
Configuring AAA, page 1-10
Monitoring AAA Servers, page 1-31
Additional References, page 1-33
Feature History for AAA Servers, page 1-33
Information About AAA
AAA enables the ASA to determine who the user is (authentication), what the user can do
(authorization), and what the user did (accounting).
AAA provides an extra level of protection and control for user access than using access lists alone. For
example, you can create an access list allowing all outside users to access Telnet on a server on the DMZ
network. If you want only some users to access the server and you might not always know IP addresses
of these users, you can enable AAA to allow only authenticated and/or authorized users to connect
through the ASA. (The Telnet server enforces authentication, too; the ASA prevents unauthorized users
from attempting to access the server.)
You can use authentication alone or with authorization and accounting. Authorization always requires a
user to be authenticated first. You can use accounting alone, or with authentication and authorization.
This section includes the following topics:
Information About Authentication, page 1-2
Information About Authorization, page 1-2
Information About Accounting, page 1-3
Summary of Server Support, page 1-3
RADIUS Server Support, page 1-4

Table of Contents

Other manuals for Cisco ASA Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco ASA Series and is the answer not in the manual?

Cisco ASA Series Specifications

General IconGeneral
ModelASA 5505
InterfacesVaries by model (Fast Ethernet, Gigabit Ethernet, 10 Gigabit Ethernet, etc.)
High AvailabilityActive/Standby or Active/Active (varies by model)
Power SupplyVaries by model
Form FactorVaries by model
Operating SystemCisco ASA Software
IPsec VPNSupported
SSL VPNSupported
IPS ThroughputVaries by model

Related product manuals