294
C
HAPTER
17: N
ETWORK
P
ROTOCOL
O
PERATION
DHCP Accounting
Fundamentals
After you complete AAA and RADIUS configuration on a switch with the DHCP server
function enabled, the DHCP server acts as a RADIUS client. For the authentication
process of the DHCP server acting as a RADIUS client. The following describes only
the accounting interaction between DHCP server and RADIUS server.
■
After sending a DHCP-ACK packet with the IP configuration parameters to the
DHCP client, the DHCP server sends an Accounting START packet to a specified
RADIUS server. The RADIUS server processes the packet, makes a record, and
sends a response to the DHCP server.
■
Once releasing a lease for some reason, the DHCP server sends an Accounting
STOP packet to the RADIUS server. The RADIUS server processes the packet, stops
the recording for the DHCP client, and sends a response to the DHCP server. A
lease can be released for the reasons such as lease expiration, a release request
received from the DHCP client, a manual release operation, an address pool
removal operation.
■
If the RADIUS server of the specified domain is unreachable for some reason, the
DHCP server sends up to three Accounting START packets (including the first
sending attempt) at regular intervals. If the three packets bring no response from
the RADIUS server, the DHCP server does not send Accounting START packets any
more.
DHCP Accounting
Configuration
The following section describes DHCP accounting configuration.
Prerequisites
Before configuring DHCP accounting, make sure that:
■
The DHCP server is configured and operates properly. Address pools and lease time
are configured.
■
DHCP clients are configured and DHCP service is enabled.
■
The network operates properly.
Configuring DHCP Accounting
Table 289 contains information for configuring DHCP Accounting.
DHCP Accounting Configuration Example
Network requirements
■
The DHCP server connects to a DHCP client and a RADIUS server respectively
through its Ethernet1/0/2 and Ethernet1/0/1 ports.
■
Ethernet1/0/2 port belongs to VLAN 2; Ethernet1/0/1 port belongs to VLAN 3.
■
The IP address of VLAN 2 interface is 10.1.1.1/24, and that of VLAN 3 interface is
10.1.2.1/24.
■
The IP address of the RADIUS server is 10.1.2.2/24.
Table 289 Configure DHCP accounting
Operation
Command
Description
Enter system view
system-view
-
Enter address pool
view
dhcp server ip-pool
pool-name
Required
Enable DHCP
accounting
accounting domain
domain-name
Required
The domain identified by the domain-name
argument can be created by using the domain
command.
Содержание 5500 SI - Switch - Stackable
Страница 24: ...24 ABOUT THIS GUIDE...
Страница 30: ...30 CHAPTER 1 GETTING STARTED Figure 3 Setting up a New Connection Figure 4 Configuring the Port for Connection...
Страница 50: ...50 CHAPTER 1 GETTING STARTED...
Страница 54: ...54 CHAPTER 2 ADDRESS MANAGEMENT CONFIGURATION...
Страница 78: ...78 CHAPTER 3 PORT OPERATION...
Страница 88: ...88 CHAPTER 4 XRN CONFIGURATION...
Страница 122: ...122 CHAPTER 8 VLAN VPN CONFIGURATION...
Страница 216: ...216 CHAPTER 15 SSH TERMINAL SERVICES...
Страница 268: ...268 CHAPTER 16 IP ROUTING PROTOCOL OPERATION...
Страница 308: ...308 CHAPTER 17 NETWORK PROTOCOL OPERATION...
Страница 349: ...349...
Страница 350: ...350 CHAPTER 18 MULTICAST PROTOCOL...
Страница 522: ...522 CHAPTER 22 FILE SYSTEM MANAGEMENT...
Страница 584: ...584 CHAPTER 30 PASSWORD CONTROL CONFIGURATION OPERATIONS...
Страница 600: ...600 CHAPTER 31 MSDP CONFIGURATION...
Страница 614: ...614 CHAPTER 32 CLUSTERING...
Страница 670: ...670 CHAPTER C AUTHENTICATING THE SWITCH 5500 WITH CISCO SECURE ACS...