Project

General

Profile

Actions

Feature #16324

open

If AAA Server Used - Disable Local Account

Added by Alex Ellington about 2 months ago.

Status:
New
Priority:
Very High
Assignee:
-
Category:
Authentication
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default

Description

If a AAA server (e.g., Radius) is the main authentication method, and someone gains access to local account credentials, and uses it, they can bypass the AAA server entirely. That is a security risk.

Requesting a toggle feature to disable the local account if the AAA server is active and has connectivity. The only way a local account could be used is if the AAA server is not reachable. This could maybe be called 'Local Account Failover'.

No data to display

Actions

Also available in: Atom PDF