AAA Server Services: Examining Radius, TACACS, and DIAMETER

Notable Differences Among AAA Server Services

Prev Question Next Question

Question

Which of following is not a service provided by AAA servers (Radius, TACACS and DIAMETER)?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

B.

Radius, TACACS and DIAMETER are classified as authentication, authorization, and accounting (AAA) servers.

Source: TIPTON, Harold.

F.

& KRAUSE, MICKI, Information Security Management Handbook, 4th Edition, Volume 2, 2001, CRC Press, NY, Page 33

also see: The term "AAA" is often used, describing cornerstone concepts [of the AIC triad] Authentication, Authorization, and Accountability.Left out of the AAA acronym is Identification which is required before the three "A's" can follow.

Identity is a claim, Authentication proves an identity, Authorization describes the action you can perform on a system once you have been identified and authenticated, and accountability holds users accountable for their actions.

Reference:CISSP Study Guide, Conrad Misenar, Feldman p.

10-11, (c) 2010 Elsevier.

AAA (Authentication, Authorization, and Accounting) servers are used to provide a centralized authentication mechanism, access control, and accounting for users accessing network resources. The three most commonly used AAA servers are RADIUS (Remote Authentication Dial-In User Service), TACACS+ (Terminal Access Controller Access Control System Plus), and Diameter.

Out of the given options, "Administration" is not a service provided by AAA servers. Let's look at each of the services provided by AAA servers in more detail:

  1. Authentication: AAA servers provide authentication services to verify the identity of users attempting to access network resources. Authentication is the first step in the process of granting access to network resources.

  2. Authorization: Once a user has been authenticated, AAA servers provide authorization services to determine whether the user is authorized to access the requested resource. Authorization is the process of determining what a user is allowed to do on the network.

  3. Accounting: AAA servers provide accounting services to track the usage of network resources by users. Accounting is the process of collecting usage data such as the amount of time a user spends on the network or the amount of data they have transferred.

  4. Administration: Unlike the other three services, AAA servers do not provide administration services. Administration is the process of managing network resources, such as creating or deleting user accounts, managing network devices, or configuring network services.

Therefore, the correct answer to the question is B. Administration. AAA servers do not provide administration services.