Soru

Zorluk: KolayAAA Framework and Authentication Methods

Which of the following operational characteristics correctly distinguish TACACS+ from RADIUS when evaluating centralized network access controls? (Select TWO.)

  1. TACACS+ encrypts the entire packet payload, whereas RADIUS encrypts only the password field.Cevap
  2. TACACS+ uses TCP as its transport protocol, whereas RADIUS typically relies on UDP.Cevap
  3. C
    TACACS+ relies on UDP port 1812 for authentication, whereas RADIUS uses TCP port 49.
  4. D
    RADIUS decouples authentication and authorization into separate processes, whereas TACACS+ combines them into a single step.

Cevap

TACACS+ encrypts the entire packet payload and uses TCP as its transport protocol, whereas RADIUS encrypts only the password field and relies on UDP.
TACACS+ provides full-packet body encryption for all communications and relies on connection-oriented TCP (port 49). In contrast, RADIUS only encrypts the password field within its payload and relies on connectionless UDP (ports 1812/1813).

Adım Adım Çözüm

1
Analyze encryption scope differences between RADIUS and TACACS+
Identify that TACACS+ encrypts the entire payload body of every packet, whereas RADIUS leaves packet headers and attributes unencrypted, encrypting only the user password field.
Encryption boundary is a core architectural distinction between TACACS+ and RADIUS.
2
Analyze transport protocol and port assignments
Identify that TACACS+ operates over TCP port 49, offering reliable connection delivery, while RADIUS operates over UDP ports 1812 (authentication) and 1813 (accounting).
Layer 4 transport choice dictates connection handling and default port numbers for each AAA protocol.

Anahtar Kavram

Core architectural differences between RADIUS and TACACS+ AAA protocols
Bu soruyu puanla