MES3000 Ethernet switch series 135
no ip http authentication aaa
login-authentication
Restore the default value.
ip ftp authentication aaa login-
authentication method_list
method_list: (local,
none, tacacs,
radius)/local
Define the authentication method for FTP server access. When the
method list is set, the additional method will be applied only when
the main authentication method will return the error.
- method_list—authentication method
- local—by local database name
- none—not used
- tacacs—use all TACACS+ server lists
- radius—use all RADIUS server lists
no ip ftp authentication aaa
login-authentication
Restore the default value.
aaa accounting commands
stop-only default tacacs
Accounting is disabled
by default.
Enable accounting for commands entered into CLI.
no aaa accounting commands
stop-only default tacacs
Restore the default value.
To grant the client access to the device, even if authentication methods return the error, use the
last method value in the command—none.
Table 5.144 —RADIUS protocol accounting message attributes for control sessions
Attribute
presence in
Start message
Attribute
presence in
Stop message
Switch IP address used for Radius server sessions.
Arbitrary value, included in all session accounting
messages.
Switch IP address used for control sessions.
Unique accounting identifier.
Define the method for client authentication.
Show the duration of user connection to the
system.
Acct-Terminate-Cause (49)
The reason for closing session.
Table 5.145 —RADIUS protocol accounting message attributes for IEEE 802.1x sessions
Attribute
presence in
Start message
Attribute
presence in
Stop message
Switch IP address used for Radius server sessions.
Switch port the user connected to.
Arbitrary value included in all session accounting
messages.
IP address of the switch.
Unique accounting identifier.
Define the method for client authentication.
Show the duration of user connection to the