Chapter 7 - Implementing AAA Using IOS and the ACS Server Flashcards

1
Q

What does ACS stand for?

A

Access Control Server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the main purpose of an ACS server?

A

It’s a way to centrally manage users and control what those users are authorized to do.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

It may be time-consuming to set up all usernames and passwords on an ACS server. What could you set up the ACS server to connect to instead to save some time?

A

The ACS server can use an external database that already exists that contains the usernames and passwords such as Active Directory.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does ISE stand for?

A

Identity Services Engine

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What 2 main protocols may be used between the ACS server and its client?

A

TACACS+ and RADIUS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does TACACS+ stand for?

A

Terminal Access Control Access Control Server

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What does RADIUS stand for?

A

Remote Authentication Dial-In User Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which protocol encrypts each packet before it is sent on the network?

A

TACACS+

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which protocol encrypts passwords, but no other packets being sent?

A

RADIUS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which protocol is an open standard and supported by nearly all vendors’ AAA implementation?

A

RADIUS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What L4 protocol does TACACS+ use?

A

TCP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What L4 protocol does RADIUS use?

A

UDP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which protocol separates AAA functions into distinct elements. Authentication is separate from authorization, and both of those are separate from accounting?

A

TACACS+

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which protocol is Cisco proprietary, but very well known?

A

TACACS+

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which protocol combines many of the functions of authentication and authorization together and has detailed accounting capability when accounting is configured for use?

A

RADIUS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which protocol supports granular command by command authorization and the rules are defined on the ACS server about which commands are allowed and disallowed?

A

TACACS+

17
Q

Which protocol, RADIUS or TACACS+, provides more detailed and extensive accounting capabilities?

A

RADIUS