TACACS+ Overview

TACACS+ is an improved version of TACACS. TACACS+ forwards username and password information to a centralized security server. Figure 3-11 shows a typical TACACS+ topology.

Figure 3-11. General Features

General Features

TACACS+ has the following features:

  • TCP packets for reliable data transport— TACACS+ uses TCP as the communication protocol between the remote client and security server.

    - Supports the AAA architecture

  • Link is encrypted— The data payload of IP packets (TCP packets) is encrypted for security and is stored in encrypted form in the remote security database.

    - Supports PAP, CHAP, and MS-CHAP authentication ...

Get CCSP Self-Study: Securing Cisco IOS Networks (SECUR) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.