06.05.2013 Views

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

User Guide for Cisco Secure Access Control Server - Stewing Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

ACS Features, Functions and Concepts<br />

Authentication Protocol-Database Compatibility<br />

Passwords<br />

1-8<br />

<strong>User</strong> <strong>Guide</strong> <strong>for</strong> <strong>Cisco</strong> <strong>Secure</strong> <strong>Access</strong> <strong>Control</strong> <strong>Server</strong> 4.2<br />

Chapter 1 Overview<br />

The various password protocols that ACS supports <strong>for</strong> authentication are supported unevenly by the<br />

various databases that ACS supports. For more in<strong>for</strong>mation about the password protocols that ACS<br />

supports, see Passwords, page 1-8.<br />

Table 1-2 specifies non-EAP authentication protocol support.<br />

Table 1-2 Non-EAP Authentication Protocol and <strong>User</strong> Database Compatibility<br />

Database ASCII/PAP CHAP ARAP MS-CHAP v.1 MS-CHAP v.2<br />

ACS Yes Yes Yes Yes Yes<br />

Windows SAM Yes No No Yes Yes<br />

Windows AD Yes No No Yes Yes<br />

LDAP Yes No No No No<br />

ODBC (ACS <strong>for</strong><br />

Windows only)<br />

Yes Yes Yes Yes Yes<br />

LEAP Proxy RADIUS<br />

<strong>Server</strong><br />

Yes No No Yes Yes<br />

All Token <strong>Server</strong>s Yes No No No No<br />

Table 1-3 specifies EAP authentication protocol support.<br />

Table 1-3 EAP Authentication Protocol and <strong>User</strong> Database Compatibility<br />

PEAP PEAP<br />

EAP- EAP- PEAP (EAP-MS (EAP- EAP-FAST EAP-FAST<br />

Database LEAP MD5 TLS (EAP-GTC) CHAPv2) TLS) Phase Zero Phase Two<br />

ACS Yes Yes Yes Yes Yes Yes Yes Yes<br />

Windows SAM Yes No No Yes Yes No Yes Yes<br />

Windows AD Yes No Yes Yes Yes Yes Yes Yes<br />

LDAP No No Yes Yes No Yes No Yes<br />

ODBC (ACS <strong>for</strong><br />

Windows only)<br />

Yes Yes Yes Yes Yes Yes Yes Yes<br />

LEAP Proxy<br />

RADIUS <strong>Server</strong><br />

Yes No No Yes Yes No Yes Yes<br />

All Token<br />

<strong>Server</strong>s<br />

No No No Yes No No No No<br />

ACS supports many common password protocols:<br />

ASCII/Password Authentication Protocol (ASCII/PAP)<br />

CHAP<br />

MS-CHAP<br />

Lightweight and Efficient Application Protocol (LEAP)<br />

OL-14386-02

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!