
No external authorization of commands is supported.

It provides more granular control i.e can specify the particular command for authorization.
WUALA PORT PASSWORD
Only the password is encrypted while the other information such as username, accounting information, etc are not encrypted. It uses UDP port number 1812 for authentication and authorization and 1813 for accounting.Īuthentication, Authorization, and Accounting are separated in TACACS+.Īuthentication and Authorization are combined in RADIUS. Further authorization and accounting are different in both protocols as authentication and authorization are combined in RADIUS. The server replies with an access-accept message if the credentials are valid otherwise send an access-reject message to the client. First, NAD obtains the username prompt and transmits the username to the server, and then again the server is contacted by NAD to obtain the password prompt and then the password is sent to the server. NAD contact the TACACS+ or RADIUS server and transmit the request for authentication (username and password) to the server. The process is started by Network Access Device (NAD – client of TACACS+ or RADIUS).


