ProCurve Series 2300 and 2500 Switches Release Notes
106
Enhancements in Release F.04.08
Configuring RADIUS Authentication and Accounting
Note
This section assumes you have already:
■ Configured RADIUS authentication on the switch for one or more access methods
■ Configured one or more RADIUS servers to support the switch
If you have not already done so, refer to “General RADIUS Setup Procedure” on page 95 before
continuing here.
RADIUS accounting collects data about user activity and system events and sends it to a RADIUS
server when specified events occur on the switch, such as a logoff or a reboot. The Series 2500
switches support three types of accounting services:
■ Network accounting: Provides records containing the information listed below on clients
directly connected to the switch and operating under Port-Based Access Control (802.1x):
(For 802.1x information on the Series 2500 switches, refer to “Configuring Port-Based Access Control
(802.1x)” on page 20.)
■ Exec accounting: Provides records containing the information listed below about login
sessions (console, Telnet, and SSH) on the switch:
[no] aaa accounting update
periodic < 1 .. 525600 > (in minutes)
page 112
[no] aaa accounting suppress null-username page 112
show accounting page 116
show accounting sessions page 116
show radius accounting page 116
• Acct-Session-Id
• Acct-Status-Type
• Acct-Terminate-Cause
• Acct-Authentic
• Acct-Delay-Time
• Acct-Input-Packets
• Acct-Output-Packets
• Acct-Input-Octets
• Nas-Port
• Acct-Output-Octets
• Acct-Session-Time
•User-Name
• Service-Type
• NAS-IP-Address
• NAS-Identifier
• Called-Station-Id
• Acct-Session-Id
• Acct-Status-Type
• Acct-Terminate-Cause
• Acct-Authentic
• Acct-Delay-Time
• Acct-Session-Time
•User-Name
• Service-Type
• NAS-IP-Address
• NAS-Identifier
• Calling-Station-Id
RADIUS Accounting Commands