Authentication, authorization, and accounting

Authentication, authorization, and accounting (AAA) is a framework used to control and track access within a computer network.

Authentication is concerned with proving identity, authorization with granting permissions, accounting with maintaining a continuous and robust audit trail via logging.

Common network protocols providing this functionality include TACACS+, RADIUS,[1] and Diameter.[2][3]

  1. ^ C. Rigney, S. Willens, A. Rubens, W. Simpson, "Remote Authentication Dial In User Service (RADIUS)", IETF RFC 2865, June 2000.
  2. ^ P. Calhoun, J. Loughney, E. Guttman, G. Zorn, J. Arkko, "Diameter Base Protocol", IETF RFC 3588, September 2003.
  3. ^ Sasu Tarkoma, "Mobile Middleware: Architecture, Patterns and Practice", John Wiley and Sons, 2009, pp. 248–251. ISBN 9780470745526.