On 07/12/2009 19:32, Gert Doering wrote:
> For router cli access (as opposed to "dial-in usage"), I can't see any
> reason to go for Radius, and lots of reasons to stick to TACACS.

This is exactly what was going through my mind.  One of my preferred
reasons for sticking with tacacs+ is that to access more advanced aaa
functionality using radius, you still need to use tacacs+ av pairs.  IOW,
there's hackery going on which you can directly avoid if you just stick to
tacacs+.

Nick
_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to