[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
The state of TACACS+
- Subject: The state of TACACS+
- From: mcn4 at leicester.ac.uk (Matthew Newton)
- Date: Mon, 5 Jan 2015 12:46:59 +0000
- In-reply-to: <m261cudiij.wl%[email protected]>
- References: <CAL9jLaZnqWMrrsOFoEUWsHHUEVSYRythhHQZzPNdD=1R406A-w@mail.gmail.com> <[email protected]> <[email protected]> <CAAAwwbXt69e=TqYif=jXLPcOMPBwG_Fu5R3TDhZ-8LXS7Rwt5Q@mail.gmail.com> <[email protected]> <CAAAwwbXbWWyN8XLDobXvZ-3yj3LqTZuVrk3GUvqUFu-LMLCQwQ@mail.gmail.com> <[email protected]> <CAL9jLab4Vybz6MDzTryyW2vcYO9EhpAkb9nqhnM5TCiSty+uBg@mail.gmail.com> <CAAAwwbVGmmX4dn1BuY5EJVJ06y73nyM=QWUu982WqHpztcyW9A@mail.gmail.com> <m261cudiij.wl%[email protected]>
On Mon, Dec 29, 2014 at 04:25:56PM +0900, Randy Bush wrote:
> > Rfc6613: TLS or IPsec transport is shown as mandatory for RADIUS over TCP.
>
> sweet. can you ref conforming implementations?
FreeRADIUS and Radiator can do RADSEC, as well as radsecproxy, so
it can be used to protect e.g. site-to-site proxying. I don't know
whether any switches/NASes can do it at present, though.
Matthew
--
Matthew Newton, Ph.D. <mcn4 at le.ac.uk>
Systems Specialist, Infrastructure Services,
I.T. Services, University of Leicester, Leicester LE1 7RH, United Kingdom
For IT help contact helpdesk extn. 2253, <ithelp at le.ac.uk>