3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide

306 CHAPTER 17: AAA/RADIUS/HWTACACS CONFIGURATION COMMANDS
By default, IP address of TACACS authorization server is 0.0.0.0.
If TACACS authentication is configured for a user without TACACS authorization
server, the user cannot log in regardless of any user type.
You are not allowed to assign the same IP address to both primary and secondary
authorization servers.
You can configure only one primary authorization server in a HWTACACS scheme.
If you repeatedly use this command, the latest configuration replaces the previous
one.
You can remove an authorization server only when it is not being used by any
active TCP connections, and the removal impacts only packets forwarded
afterwards.
Related command: display hwtacacs.
Example
# Configure a primary authorization server.
[SecBlade_FW] hwtacacs scheme test1
[SecBlade_FW-hwtacacs-test1] primary authorization 10.163.155.13 49
reset hwtacacs statistics Syntax
reset hwtacacs statistics { accounting | authentication | authorization | all }
View
User view
Parameter
accounting: Clears all the HWTACACS accounting statistics.
authentication: Clears all the HWTACACS authentication statistics.
authorization: Clears all the HWTACACS authorization statistics.
all: Clears all statistics.
Description
Use the reset hwtacacs statistics command to clear HWTACACS protocol
statistics.
Related command: display hwtacacs.
Example
# Clear all HWTACACS protocol statistics.
<SecBlade_FW> reset hwtacacs statistics
reset
stop-accounting-buffer
Syntax
reset stop-accounting-buffer hwtacacs-scheme hwtacacs-scheme-name