Which protocol provides centralized authentication, authorization, and accounting for network access control?

Prepare for the Certified Ethical Hacker Version 11 Exam with a comprehensive test featuring flashcards and multiple choice questions, each accompanied by hints and explanations to ensure a thorough understanding. Ace your ethical hacking exam with confidence!

Multiple Choice

Which protocol provides centralized authentication, authorization, and accounting for network access control?

Explanation:
RADIUS provides centralized authentication, authorization, and accounting for network access control. It’s designed for network access scenarios where a client device like a wireless AP, VPN concentrator, or switch forwards a user’s credentials to a central server. The RADIUS server then authenticates the user, enforces policy-based authorization (determining what services or resources the user can access), and performs accounting by logging session start/stop, duration, and usage. This centralized AAA model simplifies enforcement and auditing across the network. LDAP, while a directory service that can store and verify user credentials, is not itself a complete AAA solution for network access control and typically lacks the built-in accounting component. DNS and HTTPS serve different functions (name resolution and secure web transport, respectively) and do not provide centralized AAA for network access.

RADIUS provides centralized authentication, authorization, and accounting for network access control. It’s designed for network access scenarios where a client device like a wireless AP, VPN concentrator, or switch forwards a user’s credentials to a central server. The RADIUS server then authenticates the user, enforces policy-based authorization (determining what services or resources the user can access), and performs accounting by logging session start/stop, duration, and usage. This centralized AAA model simplifies enforcement and auditing across the network.

LDAP, while a directory service that can store and verify user credentials, is not itself a complete AAA solution for network access control and typically lacks the built-in accounting component. DNS and HTTPS serve different functions (name resolution and secure web transport, respectively) and do not provide centralized AAA for network access.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy