Get 30% off ITprotv.com with PROMO CODE CCNADT Follow me on
Twitter: https://twitter.com/CCNADailyTIPS
Take the Quizlet: https://quizlet.com/_6qbfal
ITProTV Lab:
My strategy to pass CCNA Security in 6 MONTHS:
https://www.youtube.com/watch?v=TRqDG…
Video 1: https://www.youtube.com/watch?v=loUUW…
Video 2: https://www.youtube.com/watch?v=qv-mm…
Video 3: https://www.youtube.com/watch?v=LKhP2…
Video 4: https://youtu.be/NK7uaqr2fgM
Video 5: https://youtu.be/FBCfrWImz2E
Video 6: https://youtu.be/kb7lgscxt4A
Video 7: https://youtu.be/av381O7mEVA
Video 8: https://youtu.be/vKaFfvc1Xm0
Video 9: https://youtu.be/8fPE7JdI-yk
Video 10 : https://youtu.be/uPiIC54SQlM
Video 11: https://youtu.be/4XXz4vg25gw
Video 12: https://youtu.be/TRwyMv_u_U4
Video 13: https://youtu.be/–oBDwISIPA
Video 14 previous: https://youtu.be/KWwV-ULqMeI
2.2.e Describe authentication and authorization using ACS and ISE ACS
ACS:
Cisco Secure ACS is a robust AAA server offering both TACACS+ and RADIUS services in one system. With ACS, an organization can centralize both user network access policies and network device administrative access policies in one server. Most network devices rely on the TACACS+ and RADIUS protocols to communicate with AAA servers.
Some network devices have the ability to interact directly with Active Directory (AD) or LDAP for authentication purposes. Although Cisco Secure ACS can be integrated to use the AD service, Microsoft Windows Server can also be configured as an AAA server.
ISE:
Cisco ISE is a next-generation identity management system that combines ACS with Network Admission Control (NAC) but also includes features such as:
- Profiling: Determines the type of device from which the user is accessing the network
- Posture assessment: Determines the “health” of the device accessing the network.
- Centralized web authentication: Simplifies the provisioning of guest access
- AAA: Offers identity-based network access, logging, compliance, and reporting.
Cisco ISE is the main policy component for Cisco TrustSec and is a Cisco technology that protects assets such as data, applications, and mobile devices from unauthorized access.
Cisco ISE not only can quickly isolate and contain threats and limit the impact of data breaches, but can also simplify and accelerate safe bring your own device (BYOD) deployments.