RADIUS Authentication and Accounting
Configuring RADIUS Accounting
N o t e
• Acct-Session-Id
• Acct-Status-Type
• Acct-Terminate-Cause
• Acct-Authentic
3-16
Configuring RADIUS Accounting
RADIUS Accounting Commands
[no] radius-server host < ip-address >
[ acct-port < port-number >]
[key < key-string >]
[no] aaa accounting < exec | network | system >
< start-stop | stop-only> radius
[no] aaa accounting update
periodic < 1 .. 525600 > (in minutes)
[no] aaa accounting suppress null-username
show accounting
show accounting sessions
show radius accounting
This section assumes you have already:
Configured RADIUS authentication on the switch for one or more
access methods
Configured one or more RADIUS servers to support the switch
If you have not already done so, refer to "General RADIUS Setup Procedure"
on page 3-5 before continuing here.
RADIUS accounting collects data about user activity and system events and
sends it to a RADIUS server when specified events occur on the switch, such
as a logoff or a reboot. The Switch 2650 and 6108 support three types of
accounting services:
Network accounting: Provides records containing the information
listed below on clients directly connected to the switch and operating
under Port-Based Access Control (802.1x):
• Acct-Delay-Time
• Acct-Input-Packets
• Acct-Output-Packets
• Acct-Input-Octets
Page
3-19
3-19
3-19
3-21
3-22
3-22
3-26
3-27
3-26
• Nas-Port
• Acct-Output-Octets
• Acct-Session-Time
• Username
• Service-Type
• NAS-IP-Address
• NAS-Identifier
• Called-Station-Id