EasyManuals Logo

GE Multilink ML3000 User Manual

GE Multilink ML3000
356 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #141 background imageLoading...
Page #141 background image
MULTILINK ML3000 ETHERNET COMMUNICATIONS SWITCH – INSTRUCTION MANUAL 8–1
Multilink ML3000
Ethernet Communications Switch
Chapter 8: Access using TACACS+
GE Energy
Access using TACACS +
8.1 Introduction to TACACS+
8.1.1 Overview
The TACACS+ protocol (short for Terminal Access Controller Access Control System)
provides access control for routers, network access servers and other networked
computing devices via one or more centralized servers. TACACS+ provides separate
authentication, authorization and accounting services.
TACACS allows a client to accept a username and password and send a query to a TACACS
authentication server, sometimes called a TACACS daemon (server) or simply TACACSD. This
server was normally a program running on a host. The host would determine whether to
accept or deny the request and sent a response back.
The TACACS+ protocol is the latest generation of TACACS. TACACS is a simple UDP based
access control protocol originally developed by BBN for the MILNET (Military Network).
XTACACS is now replaced by TACACS+. TACACS+ is a TCP based access control protocol.
TCP offers a reliable connection-oriented transport, while UDP offers best-effort delivery.
TACACS+ improves on TACACS and XTACACS by separating the functions of authentication,
authorization and accounting and by encrypting all traffic between the Network Access
Server (NAS) and the TACACS+ clients or services or daemon. It allows for arbitrary length
and content authentication exchanges, which allows any authentication mechanism to be
utilized with TACACS+ clients. The protocol allows the TACACS+ client to request very fine-
grained access control by responding to each component of a request.
The MultiLink switch implements a TACACS+ client.
1. TACACS+ servers and daemons use TCP port 49 for listening to client requests.
Clients connect to this port to send authentication and authorization packets.
2. There can be more than one TACACS+ server on the network. The MultiLink
Switch Software supports a maximum of five TACACS+ servers.

Table of Contents

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the GE Multilink ML3000 and is the answer not in the manual?

GE Multilink ML3000 Specifications

General IconGeneral
BrandGE
ModelMultilink ML3000
CategoryNetwork Router
LanguageEnglish

Related product manuals