| Component | RADIUS | TACACS+ | 
| Protocol and Ports | Cisco: UDP Port 1645 (Authentication/Authorisation) UDP Port 1646 (Accounting) Industry Standard: UDP Port 1812 (Authentication/Authorisation) UDP Port 1813 (Accounting) | TCP Port 49 | 
| Encryption | Encrypts the password field Supports EAP for 802.1x authentication | Encrypts entire payload Does not support EAP | 
| Authentication and Authorisation | Combines authentication and authorisation Cannot be used to authorise individual CLI commands | Separates authentication and authorisation Can be used for individual CLI command authorisation | 
| Accounting | Does not support network device CLI accounting | Support network device CLI command accounting | 
| Primary Use | Secure Network Access | Network Device Access Control | 
Comparison of RADIUS and TACACS+
by
Tags:

Leave a Reply