DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide
57
6-15 aaa accounting network
This command is used to account users in order to count the network access fees. The no form of this command is
used to disable the accounting function.
aaa accounting network default start-stop
method1
[
method2...
]
no aaa accounting network default
Parameters
method
Syntax "
{local | none | group radius | group_name}
".
Up to four methods supported:
local
- Specifies to use the local user name database for authorization.
none
- Specifies not tp perform authorization.
group
- Specifies to be followed by radius or a group name.
"
group radius
" means to use all RADIUS servers group.
“
group group_name
” means to use a specific RADIUS group, created by means
of the
aaa group server radius
global configuration command.
Default
By default, this feature is disabled.
Command Mode
Global Configuration Mode.
Command Default Level
Level: 15
Usage Guideline
It supports authorization of all the service requests related to the network, such as
802.1X. If authorization is configured, all the authenticated users or interfaces will be
authorized automatically. Three different authorization methods can be specified. If
the access user authenticated method is specified in authorization method list, the
authorization attributes will be applied, otherwise these attributes will be ignored.
Authenticated by method
Authorization configure method Accept authorization attributes
group radius
group radius
Yes
group radius
local / none
No
local
group radius / none
No
local
local
No
none
group radius / local / none
No
The RADIUS server authorizes authenticated users by returning a series of
attributes. Therefore, RADIUS authorization is based on RADIUS authentication.
RADIUS authorization is performed only when the user passes the RADIUS
authentication.
Example
This example shows how to use the RADIUS server to authorize network services.
DXS-3600-32S#configure terminal
DXS-3600-32S(config)#aaa authorization network default group radius
DXS-3600-32S(config)#
network
Specifies to perform accounting of the network related service requests, including
dot1x, etc.
start-stop
Send accounting messages at both the start time and the end time of access. Users
are allowed to access the network, no matter whether the start accounting message
enables the accounting successfully.
Содержание DXS-3600-16S
Страница 1: ...CLI Reference Guide Product Model DXS 3600 Series Layer 2 3 Managed 10GbE Switch Release 1 10 ...
Страница 232: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 224 ...
Страница 301: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 293 ...
Страница 349: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 341 ...
Страница 494: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 486 ...
Страница 564: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 556 ...
Страница 649: ...DXS 3600 Series 10GbE Layer 2 3 Switch CLI Reference Guide 641 ...