Soru

Zorluk: OrtaAAA Framework and Authentication Methods

During a security audit of network infrastructure management practices, an auditor notes that switch management sessions rely on a protocol that encrypts only the password field within packet headers and combines authentication and authorization into a single service over UDP. To achieve full payload encryption, command-by-command authorization decoupling, and reliable connection-oriented transport on port 49, which protocol should be deployed?

  1. TACACS+Cevap
  2. B
    RADIUS
  3. C
    Kerberos
  4. D
    802.1X

Cevap

TACACS+ (Terminal Access Controller Access-Control System Plus) should be deployed because it operates over TCP port 49, encrypts the entire packet payload, and decouples authentication and authorization into distinct modular processes.
TACACS+ satisfies all requirement criteria: it uses connection-oriented TCP port 49, encrypts the complete packet payload (protecting administrative command traffic), and separates authentication, authorization, and accounting into distinct modular components.

Adım Adım Çözüm

1
Evaluate transport layer and encryption scope requirements.
The requirement specifies full packet payload encryption and connection-oriented transport over TCP port 49.
TACACS+ utilizes TCP port 49 and encrypts the entire body of the packet, whereas RADIUS only encrypts the password attribute over UDP.
2
Analyze AAA service architectural separation.
The targeted protocol must decouple authentication from authorization functionality.
TACACS+ separates AAA functions, allowing granular authorization of individual admin commands independently of authentication, whereas RADIUS combines authentication and authorization.

Anahtar Kavram

RADIUS vs. TACACS+ Feature & Architectural Differentiation
Tahmini Süre:1m 15s
Bu soruyu puanla