Understanding Cut Through Proxy
Before you start
Cut Through Proxy
In computer networking, Cut Through Proxy is a type of service which can be configure on various type of firewalls like CISCO ASA. The main aim of cut through proxy is that it can easily identified a user for providing a particular type of service and if the user is successfully authenticate then it will provide the one or more defined services to the authenticated user. This technique is much helpful for security administration and network admin's.
So, if we are successfully configure Cut through proxy then we can assign particular database on which our valid users are present and while authenticated the users it will connect to this database and match particular entry for the specified username and password, if both username and password will match, then He/She will be successfully authenticated and Firewall like CISCO ASA automatically provide service to the authenticated user.
Role of AAA Server in Cut Through Proxy
AAA Server stand for Accounting, Authentication and Authorization, and while the configure cut through proxy we have option to use this server to store various username and passwords of the valid users. No doubt, ASA itself can store many user's database to its own database but we prefer to use a different server like ASA to authenticate different users because it is simply used TACACS or RADIUS protocol because they are secure and provide the user authenticity to the CISCO ASA when it needed.
Like ACL , on simple CISCO routers, we can put various protocols like TCP & UDP to match specific packets of particular service to match and authenticate user before it can use a particular service.
No comments:
Post a Comment