|
CISCO
SECURE ACCESS CONTROL SERVER (ACS) SOLUTION ENGINE
The
Cisco Secure Access Control Server (ACS) Solution Engine is a highly scalable,
one-rack-unit dedicated platform that serves as a high-performance access
control server supporting centralized RADIUS or TACACS+. The Cisco Secure ACS
Solution Engine provides a centralized identity networking solution and
simplified user management experience across all Cisco devices and security
management applications. The solution engine helps to ensure enforcement of
assigned policies by allowing network administrators to control:
- Who can log into the network
- The privileges each user has
in the network
- Recorded security audit or
account billing information
- Access and command controls
that are enabled for each configuration’s administrator
The Cisco Secure ACS Solution Engine is a
main pillar of Cisco trust and identity networking security solutions. It
extends access security by combining authentication, user and administrator
access, and policy control from a centralized identity networking framework,
allowing greater flexibility and mobility, increased security, and user
productivity gains.
With the Cisco Secure ACS Solution Engine,
you can manage and administer user access for Cisco IOS® routers, VPNs,
firewalls, dialup and DSL connections, cable access solutions, storage, content,
voice over IP (VoIP), Cisco wireless solutions, and Cisco Catalyst® switches
using IEEE 802.1X access control.
Advanced features include:
- Automatic service monitoring,
database synchronization, and importation of tools for large-scale
deployments
- Lightweight Directory Access
Protocol (LDAP) and Open Database Connectivity (ODBC) user authentication
support
- Flexible 802.1X
authentication type support, including Extensible Authentication Protocol
Transport Layer Security (EAP-TLS), Protected EAP (PEAP), Cisco LEAP, EAP-Flexible
Authentication via Secure Tunneling (EAP-FAST), and EAP-Message Digest
Algorithm 5 (EAP-MD5)
- Downloadable access control
lists for any Layer 3 device, including Cisco routers, Cisco PIX® firewalls,
and Cisco VPNs
- Device command set
authorization
- Network access restrictions
- User and administrative
access reporting
- Dynamic quota generation
- Restrictions such as time of
day and day of week
- User and device group
profiles
|
 |
|