Chapter 1 Overview of Cisco Secure ACS
AAA Server Functions and Concepts
1-20
User Guide for Cisco Secure ACS for Windows Server
78-14696-01, Version 3.1
Accounting
AAA clients use the accounting functions provided by the RADIUS and
protocols to communicate relevant data for each user session to the
AAA server for recording. Cisco Secure ACS writes accounting records to a
comma-separated value (CSV) log file or ODBC database, depending upon your
configuration. You can easily import these logs into popular database and
spreadsheet applications for billing, security audits, and report generation.
Among the types of accounting logs you can generate are the following:
•
Accounting—Lists when sessions start and stop; records AAA
client messages with username; provides caller line identification
information; records the duration of each session.
•
RADIUS Accounting—Lists when sessions stop and start; records AAA
client messages with username; provides caller line identification
information; records the duration of each session.
•
Administrative Accounting—Lists commands entered on a network device
with command authorization enabled.
For more information about Cisco Secure ACS logging capabilities, see
Chapter 9, “Working with Logging and Reports.”
Other Accounting-Related Features
In addition to the accounting-related features discussed in this section, the
following features are provided by Cisco Secure ACS:
•
Centralized logging, allowing several Cisco Secure ACS servers to forward
their accounting data to a remote Cisco Secure ACS server (see
Remote
Logging, page 9-23
).
•
Configurable supplementary user ID fields for capturing additional
information in logs (see
User Data Configuration Options, page 3-3
).
•
Configurable logs, allowing you to capture as much information as needed
(see
Accounting Logs, page 9-5
).