9.5.4 AAA Authentication
AAA authentication methods:
● No authentication (none): No validity check is performed. Generally, this
method is not used.
● Local authentication (local): User information is configured on the NAS. Local
authentication is fast, which can reduce the operational costs, but the
information storage amount is limited by hardware.
● Remote authentication: User information is configured on the authentication
server. Remote authentication is supported over Radius, Tacacs+, and LDAP.
AAA authorization methods:
● No authorization (none): No authorization is performed for users.
● Local authorization (local): Authorization is performed based on the properties
configured by the NAS for the local account.
● Tacacs+ authorization: Users are authorized by the Tacacs+ server.
● Authorization after successful Radius authentication: Authorization is bound to
authentication, and cannot be performed independently over Radius.
● LDAP authorization
Method for enabling authentication and authorization for the gateway: