Chapter 1 Overview
AAA Server Functions and Concepts
1-10
User Guide for Cisco Secure ACS for Windows Server
78-16592-01
Authentication and User Databases
Cisco Secure ACS supports a variety of user databases. It supports the
CiscoSecure user database and several external user databases, including the
following:
•Windows User Database
•Generic LDAP
•Novell NetWare Directory Services (NDS)
•Open Database Connectivity (ODBC)-compliant relational databases
•RSA SecurID token server
•RADIUS-compliant token servers
Note For more information about token server support, see Token Server
User Databases, page 13-78
Authentication Protocol-Database Compatibility
The various password protocols supported by Cisco Secure ACS for
authentication are supported unevenly by the various databases supported by
Cisco Secure ACS. For more information about the password protocols supported
by Cisco Secure ACS, see Passwords, page 1-11.
Table 1-2 specifies non-EAP authentication protocol support.
Table 1-2 Non-EAP Authentication Protocol and User Database Compatibility
Database ASCII/PAP CHAP ARAP MS-CHAP v.1 MS-CHAP v.2
Cisco Secure ACS Yes Yes Yes Yes Yes
Windows SAM Yes No No Yes Yes
Windows AD Yes No No Yes Yes
LDAP YesNoNoNoNo
Novell NDS Yes No No No No
ODBC Yes Yes Yes Yes Yes