RADIUS Authentication and Accounting
Configuring RADIUS Accounting
Configuring RADIUS Accounting
PageRADIUS Accounting Commands
[no] radius-server host < ip-address > 6-51
[acct-port < port-number >] 6-51
[key < key-string >] 6-51
[no] aaa accounting < exec | network | system > 6-54
< start-stop | stop-only> radius
[no] aaa accounting update
6-54
periodic < 1 - 525600 > (in minutes)
[no] aaa accounting suppress null-username
6-54
show accounting 6-59
show accounting sessions 6-60
show radius accounting 6-59
Note This section assumes you have already:
■ Configured RADIUS authentication on the switch for one or more
access methods
■ Configured one or more RADIUS servers to support the switch
If you have not already done so, refer to “General RADIUS Setup Procedure”
on page 6-7 before continuing here.
RADIUS accounting collects data about user activity and system events and
sends it to a RADIUS server when specified events occur on the switch, such
as a logoff or a reboot. The switches covered by this guide support three types
of accounting services:
■ Network accounting: Provides records containing the information
listed below on clients directly connected to the switch and operating
under Port-Based Access Control (802.1x):
• Acct-Session-Id
• Acct-Output-Packets
• Service-Type
• Acct-Status-Type
• Acct-Input-Octets
• NAS-IP-Address
• Acct-Terminate-Cause
• Nas-Port
• NAS-Identifier
• Acct-Authentic
• Acct-Output-Octets
• Called-Station-Id
• Acct-Delay-Time
• Acct-Session-Time
• Acct-Input-Packets
• Username
6-48