System Management Commands
4-83
4
Command Mode
Privileged Exec
Command Usage
• Use the
debug radius
command without any
classification
or
feature
to
enable debugging for all RADIUS processes.
• Use the
debug radius all
command to enable debugging for all of the
classification
options (i.e., config, database, event, packet and avpair).
• Use the
debug radius
classification
show
feature
command to enable
debugging for the specified classification and feature. When debugging is
enabled for the
config
classification, debug messages will be shown when
RADIUS configuration commands are entered. When debugging is enabled
for the
database
classification, debug messages will be shown when a
memory operation is applied to the RADIUS database. When debugging is
enabled for the
event
classification, debug messages will be shown when a
RADIUS system event occurs. When debugging is enabled for the
packet
classification, debug messages will be shown when the switch sends or
receives a RADIUS packet. When debugging is enabled for the
avpair
classification, detailed debug messages will be shown when the switch sends
or receives a RADIUS packet.
• Use the
debug radius show
command to show debug messages for the
selected process type.
Example
When the debug packet option is selected, messages similar to those shown below
are displayed when a RADIUS request packet is sent.
Console#debug radius packet
Console#debug radius show packet
Console#
01:02:03: RADIUS: pkt/authen/author: Sent a request packet,
code=access-req, id=10, length=53
01:02:03: RADIUS: avpair/authen/author: user-name=user1, password=***, nas
-ip-address=192.168.1.1, nas-identifier=
01:02:03 RADIUS: avpair/authen/author: user-name=1xuser, nas-port-id=1,
nas-port
-id=1, calling-station-id=00-D0-59-18-17-E2, eap-message=0201,
nas-ip-address=19
2.168.1.2, nas-identifier=, nas-port-type=15,
message-authenticator=3030303030...
01:02:03: RADIUS: pkt/acct: Sent a request packet, code=acct-req, id=10,
length=60
01:02:03: RADIUS: avpair/acct: user-name=user1,
nas-ip-address=192.168.1.1, nas-
port-type=15, acct-session-id=0, acct-status-yype=1, acct-authentic=1,
acct-dela
y-time=1
01:02:03: RADIUS: avpair/acct: user-name=user1,
nas-ip-address=192.168.1.1, nas-
port-type=15, acct-session-id=0, acct-status-type=1, acct-authentic=1,
acct-dela
y-time=1, terminate-cause=1
Summary of Contents for iES4024GP
Page 1: ...iES4028F 4028FP 4024GP ...
Page 4: ...iv This page is intentionally left blank ...
Page 10: ...x This page is intentionally left blank ...
Page 28: ...Contents xxviii This page is intentionally left blank ...
Page 32: ...Tables xxxii This page is intentionally left blank ...
Page 46: ...Introduction 1 10 1 This page is intentionally left blank ...
Page 336: ...Configuring the Switch 3 280 3 This page is intentionally left blank ...
Page 688: ...Command Line Interface 4 352 4 This page is intentionally left blank ...
Page 702: ...Glossary Glossary 8 This page is intentionally left blank ...
Page 710: ...Index 8 Index This page is intentionally left blank ...
Page 711: ...This page is intentionally left blank ...
Page 712: ...iES4028F 4028FP 4024GP ...