C
HAPTER
13
| Security Measures
AAA Authorization and Accounting
– 253 –
CONFIGURING AAA
ACCOUNTING
Use the Security > AAA > Accounting page to enable accounting of
requested services for billing or security purposes, and also to display the
configured accounting methods, the methods applied to specific interfaces,
and basic accounting information recorded for user sessions.
CLI REFERENCES
◆ "AAA" on page 669
COMMAND USAGE
◆ AAA authentication through a RADIUS or TACACS+ server must be
enabled before accounting is enabled.
PARAMETERS
These parameters are displayed in the web interface:
Configure Global
◆ Periodic Update - Specifies the interval at which the local accounting
service updates information for all users on the system to the
accounting server. (Range: 0-2147483647 minutes; where 0 means
disabled)
Configure Method
◆ Accounting Type – Specifies the service as:
■
802.1X – Accounting for end users.
■
Exec – Administrative accounting for local console, Telnet, or SSH
connections.
◆ Method Name – Specifies an accounting method for service requests.
The “default” methods are used for a requested service if no other
methods have been defined. (Range: 1-255 characters)
Note that the method name is only used to describe the accounting
method configured on the specified RADIUS or TACACS+ servers. No
information is sent to the servers about the method to use.
◆ Accounting Notice – Records user activity from log-in to log-off point.
◆ Server Group Name - Specifies the accounting server group.
(Range: 1-255 characters)
The group names “radius” and “tacacs+” specifies all configured
RADIUS and TACACS+ hosts (see "Configuring Local/Remote Logon
Authentication" on page 247). Any other group name refers to a server
group configured on the Security > AAA > Server (Configure Group)
page.