MES1000, MES2000 Ethernet Switches 131
- none—not used
- tacacs—use all TACACS+ server lists
- radius—use all RADIUS server lists
no ip ftp authentication
aaa login-authentication
Restore the default value.
aaa accounting commands
stop-only default tacacs
Accounting is disabled by
default.
Enable accounting for commands entered into CLI.
no aaa accounting
commands stop-only
default tacacs
Restore the default value.
To grant the client access to the device, even if authentication methods return the error, use
the last method value in the command—none.
Table 5.136 —RADIUS protocol accounting message attributes for control sessions
Attribute
presence in
Start message
Attribute
presence in
Stop message
Switch IP address used for Radius server
sessions.
Arbitrary value, included in all session
accounting messages.
Switch IP address used for control sessions.
Unique accounting identifier.
Define the method for client authentication.
Show the duration of user connection to the
system.
Acct-Terminate-Cause (49)
The reason for closing session.
Table 5.137 —RADIUS protocol accounting message attributes for 802.1x sessions
Attribute
presence in
Start message
Attribute
presence in
Stop message
Switch IP address used for Radius server
sessions.
Switch port, the user connected to.
Arbitrary value, included in all session
accounting messages.
IP address of the switch.
Unique accounting identifier.
Define the method for client authentication.
Show the duration of user connection to the
system.