350-601 · Question #333
350-601 Question #333: Real Exam Question with Answer & Explanation
The correct answer is B: aaa group server tacacs+ TacacsServer1. FC-SP uses DHCHAP protocol for authenticating authentication between MDS9000 and other devices could potencially use both tacacs and radius. However, as it tells us all communication between them should be encrypted, only TACACS provides full AAA encryption. _mds9000_security_con
Question
A company provides applications and database hosting services to multiple customers using isolated infrastructure-as-a-service services within the same data center environment. The environment is based on Cisco MDS 9000 Series Switches. The requirement is to manage the environment by using Fibre Channel Security Protocol and to enable user authentication when the centralized AAA server is unreachable. All communication between the MDS switches and the remote servers must be encrypted. Which command set must be used to meet these requirements?
Options
- Aaaa group server radius RadiusServer1
- Baaa group server tacacs+ TacacsServer1
- Caaa group server radius RadiusServer1
- Daaa group server tacacs+ TacacsServer1
Explanation
FC-SP uses DHCHAP protocol for authenticating authentication between MDS9000 and other devices could potencially use both tacacs and radius. However, as it tells us all communication between them should be encrypted, only TACACS provides full AAA encryption. _mds9000_security_config_guide_8x/configuring_fcsp_dhchap.html#con_1247118
Topics
Community Discussion
No community discussion yet for this question.