Reference Guide

Table Of Contents
44
Security
Security features are supported on the S4810 platform.
This chapter describes several ways to provide access security to the Dell Networking system.
For details about all the commands described in this chapter, refer to the
Security
chapter in the
FTOS Command
Reference Guide
.
AAA Accounting
Accounting, authentication, and authorization (AAA) accounting is part of the AAA security model.
For details about commands related to AAA security, refer to the
Security
chapter in the
FTOS Command Reference
Guide
.
AAA accounting enables tracking of services that users are accessing and the amount of network resources being
consumed by those services. When you enable AAA accounting, the network server reports user activity to the security
server in the form of accounting records. Each accounting record is comprised of accounting atribute/value (AV) pairs
and is stored on the access control server.
As with authentication and authorization, you must configure AAA accounting by defining a named list of accounting
methods and then applying that list to various virtual terminal line (VTY) lines.
Configuration Task List for AAA Accounting
The following sections present the AAA accounting configuration tasks.
Enabling AAA Accounting (mandatory)
Suppressing AAA Accounting for Null Username Sessions (optional)
Configuring Accounting of EXEC and Privilege-Level Command Usage (optional)
Configuring AAA Accounting for Terminal Lines (optional)
Monitoring AAA Accounting (optional)
Enabling AAA Accounting
The aaa accounting command allows you to create a record for any or all of the accounting functions monitored.
To enable AAA accounting, use the following command.
Enable AAA accounting and create a record for monitoring the accounting function.
CONFIGURATION mode
aaa accounting {system | exec | command level} {default | name} {start-stop |
wait-start | stop-only} {tacacs+}
The variables are:
system: sends accounting information of any other AAA configuration.
exec: sends accounting information when a user has logged in to EXEC mode.
command level: sends accounting of commands executed at the specified privilege level.
691