home
NEWS       BLOGS       FORUMS       NEWSLETTERS       RESEARCH       EVENTS       DIGITAL LIBRARY       CAREERS  
Network Computing Network Computing Powered by InformationWeek Business Technology Network

IMMERSE YOURSELF:

SOA

  |

Data Center

  |

802.11n

  |

Data Privacy

  |
APO  |

Virtualization

  |

NAC

  |

Security

  |

Network Mgmt

  |

Enterprise Apps

  |

Storage & Servers






RADIUS Servers: Funk And Shiva Go Head-To-Head

By Dan Backman
our customizable newsletter, sends you security alerts, product updates and software patches on the products you use. Sign up now at www.networkcomputing.com /express/
 Like most critical network services, RADIUS (Remote Authentication Dial-In User Service) implementations sit unnoticed in a remote corner of the machine room. Silently authenticating dial-in users' credentials (be they user names and passwords or hard-token challenges), RADIUS is an unseen yet

key enabling technology in remote-access centers ranging from SOHO (small office/home office) to ISP densities. Pigeonholing RADIUS as a password-authentication protocol doesn't do justice to its strengths in concentrating remote-access session configuration and accounting capabilities. An effective RADIUS solution gathers remote-access authentication, user access rights and accounting (known collectively as AAA) under a common, IETF-standardized management protocol.

To view the Report card.A RADIUS server's choice of back-end authentication protocols is of critical importance--especially in enterprise settings, where dial-in user accounts are linked to existing enterprise authentication systems. An effective bridge between network access servers and any desired authentication system, RADIUS adds the capability to transmit session-configuration information bidirectionally. Through an extensible "dictionary" of known attributes (similar

to MIBs in SNMP), RADIUS servers can not only validate a password, but can pass detailed session configurations to the network access server each time a user is authenticated. By matching users to templates based on anything from logical user groups to access servers or port numbers, RADIUS moves remote-access administration from the access server to the RADIUS server. For an in-depth look at RADIUS in remote-access authentication, see "Guarding the Flank With RADIUS and TACACS+," www.NetworkComputing.com/902/902ws1.html.

RADIUS also supports rich accounting features, allowing access servers to confirm delivery of usage and session information to a central RADIUS accounting server. By tracking accounting "Start" and "Stop" records, a

RADIUS server not only tracks active dial-in sessions across a non-vendor-specific dial-in pool, but can apply additional logic to subsequent user authentications and session configurations. Examples include the ability to limit concurrent logins by a single user or enforce usage quotas at authentication time.

Put to the Test We put three leading RADIUS server products to the test in our Syracuse University and San Mateo, Calif., Real-World Labs®, with a focus on support for back-end authentication protocols, server-side access controls, and logging and accounting features.

Shiva Corp.'s Access Manager 3.0 delivered the most server-side intelligence, while Funk's Steel-Belted Radius 2.1 (and BaySecure Access Manager, a rebranded version of Funk's product) offered solid functionality. We invited Cisco Systems and Livingston Technologies to have their products included in our comparison, but Cisco declined to participate due to a self-imposed moratorium, while Livingston was unable to provide us with a beta copy of its new RADIUS product in time for our tests. This comparison also excluded products specifically targeted at hard-token authentication.


The RADIUS Servers Features charts, in Acrobat format.

For the Side Bar on

Performance: It's All A Numbers Game


Related Links

Smokin! Remote-Access Servers Pushed to The Max

Guarding The Flank With RADIUS & TACACS+

NT Remote-Access Servers: Ready For The Big League?

Getting The Best Enterprise Remote Access

3Com RAS 1500 Delivers Robust Remote Access


Other Reviews

Filling the Management Gap With Four Windows NT User Administration Tools
By Ahmad Abualsamid

Company Directory
to browse our data, starting with a particular company.

Network Computing Links
allows you to request additional product information from our advertisers.

Print This Page








Looking for a new job?

Function:

Keyword(s):

State:
SPONSOR
RECENT JOB POSTINGS
CAREER NEWS
The tumbling of IT jobs stopped in the second quarter, as the IT sector added about 44,000 jobs.

It's just a glimmer, but Oracle is starting to see a bit of light at the end of the recession tunnel.










2009 IT Salary Survey: Meager Raises, Solid Prospects
Though raises are notably smaller than a year ago, and job security’s shrinking, IT careers are looking safer than many others in this economic downturn. Get all the findings in InformationWeek's 2009 IT Salary Survey. Available FREE for a limited time.
 
ROLLING RIGHT ALONG
Follow key Network Computing Reviews from conception to completion. This Week: Holistic APM.



Network Computing Reports Emerging Enterprise Podcast Series: Secrets to Success








TechSearch


Microsite of the Week


Powerful Information at Your Fingertips



Techweb
Informationweek Business Technology Network
InformationweekInformationweek 500Informationweek 500 ConferenceInformationweek AnalyticsInformationweek Events
Informationweek MagazineGlobal CIOIWK Government ITbMightyByte and SwitchDark Reading
Digital LibraryIntelligent EnterpriseInternet EvolutionNetwork ComputingPlug Into The CloudDr. DobbsContentinople
space
TechWeb Events Network
InteropVoiceConWeb 2.0 ExpoWeb 2.0 SummitEnterprise 2.0Mobile Business ExpoNoJitter
Black HatGTECEnergy CampCloud ConnectGov 2.0 ExpoGov 2.0 Summit
space
Light Reading Communications Network
Light ReadingLight Reading AsiaUnstrungCable Digital NewsInternet EvolutionPyramid Research
Heavy ReadingLight Reading LiveLight Reading InsiderEthrnet ExpoTelco TVTower Technology Summit
space
Financial Technology Network
Advanced TradingBank Systems and TechnologyInsurance and TechnologyWall Street and TechnologyAccelerating WallstreetBST SummitBuyside Trading SummitIT Summit
space
Microsoft Technology Network
MSDNTechNetTotal IT ProTotal Dev ProNET Total Dev Pro CommunitySQL Total Dev Pro Community
space


App Infrastructure   |   Messaging & Collaboration   |   Network & Systems Mgmt   |   Network Infrastructure   |   Security  |   Storage & Servers   |   Wireless   |   Enterprise Apps
About Us  |  Contact Us  |  Site Map  |  Technology Marketing Solutions  |  Advertising Contacts  |   Briefing Centers
Copyright © 2009  United Business Media LLC  |  Privacy Statement  |  Terms of Service