294
C
HAPTER
17: N
ETWORK
P
ROTOCOL
O
PERATION
DHCP Accounting
Fundamentals
After you complete AAA and RADIUS configuration on a switch with the DHCP server
function enabled, the DHCP server acts as a RADIUS client. For the authentication
process of the DHCP server acting as a RADIUS client. The following describes only
the accounting interaction between DHCP server and RADIUS server.
■
After sending a DHCP-ACK packet with the IP configuration parameters to the
DHCP client, the DHCP server sends an Accounting START packet to a specified
RADIUS server. The RADIUS server processes the packet, makes a record, and
sends a response to the DHCP server.
■
Once releasing a lease for some reason, the DHCP server sends an Accounting
STOP packet to the RADIUS server. The RADIUS server processes the packet, stops
the recording for the DHCP client, and sends a response to the DHCP server. A
lease can be released for the reasons such as lease expiration, a release request
received from the DHCP client, a manual release operation, an address pool
removal operation.
■
If the RADIUS server of the specified domain is unreachable for some reason, the
DHCP server sends up to three Accounting START packets (including the first
sending attempt) at regular intervals. If the three packets bring no response from
the RADIUS server, the DHCP server does not send Accounting START packets any
more.
DHCP Accounting
Configuration
The following section describes DHCP accounting configuration.
Prerequisites
Before configuring DHCP accounting, make sure that:
■
The DHCP server is configured and operates properly. Address pools and lease time
are configured.
■
DHCP clients are configured and DHCP service is enabled.
■
The network operates properly.
Configuring DHCP Accounting
Table 289 contains information for configuring DHCP Accounting.
DHCP Accounting Configuration Example
Network requirements
■
The DHCP server connects to a DHCP client and a RADIUS server respectively
through its Ethernet1/0/2 and Ethernet1/0/1 ports.
■
Ethernet1/0/2 port belongs to VLAN 2; Ethernet1/0/1 port belongs to VLAN 3.
■
The IP address of VLAN 2 interface is 10.1.1.1/24, and that of VLAN 3 interface is
10.1.2.1/24.
■
The IP address of the RADIUS server is 10.1.2.2/24.
Table 289 Configure DHCP accounting
Operation
Command
Description
Enter system view
system-view
-
Enter address pool
view
dhcp server ip-pool
pool-name
Required
Enable DHCP
accounting
accounting domain
domain-name
Required
The domain identified by the domain-name
argument can be created by using the domain
command.
Summary of Contents for 5500 SI - Switch - Stackable
Page 24: ...24 ABOUT THIS GUIDE...
Page 50: ...50 CHAPTER 1 GETTING STARTED...
Page 54: ...54 CHAPTER 2 ADDRESS MANAGEMENT CONFIGURATION...
Page 78: ...78 CHAPTER 3 PORT OPERATION...
Page 88: ...88 CHAPTER 4 XRN CONFIGURATION...
Page 122: ...122 CHAPTER 8 VLAN VPN CONFIGURATION...
Page 216: ...216 CHAPTER 15 SSH TERMINAL SERVICES...
Page 268: ...268 CHAPTER 16 IP ROUTING PROTOCOL OPERATION...
Page 308: ...308 CHAPTER 17 NETWORK PROTOCOL OPERATION...
Page 349: ...349...
Page 350: ...350 CHAPTER 18 MULTICAST PROTOCOL...
Page 522: ...522 CHAPTER 22 FILE SYSTEM MANAGEMENT...
Page 584: ...584 CHAPTER 30 PASSWORD CONTROL CONFIGURATION OPERATIONS...
Page 600: ...600 CHAPTER 31 MSDP CONFIGURATION...
Page 614: ...614 CHAPTER 32 CLUSTERING...
Page 670: ...670 CHAPTER C AUTHENTICATING THE SWITCH 5500 WITH CISCO SECURE ACS...