Connectivity Guide

Table Of Contents
Command Mode CONFIGURATION
Usage
Information
You can enable the recording of accounting events in both the syslog and on TACACS+ servers. The no
version of the command disables AAA accounting.
Example
OS10(config)# aaa accounting commands all console start-stop logging
group tacacs+
Supported
Releases
10.4.1.0 or later
aaa authentication login
Configures the AAA authentication method used for console, and SSH and Telnet logins.
Syntax
aaa authentication login {console | default} {local | group radius | group
tacacs+}
Parameters
console Configure authentication methods for console logins.
default Configure authentication methods for SSH and Telnet logins.
local Use the local username, password, and role entries configured with the username
password role command.
group radius Use the RADIUS servers configured with the radius-server host command.
group tacacs+ Use the TACACS+ servers configured with the tacacs-server host
command.
Default Local authentication
Command Mode CONFIGURATION
Usage
Information
The no version of this command removes all configured authentication methods and defaults to using
local authentication.
Example
OS10(config)# aaa authentication login default group radius local
OS10(config)# do show running-configuration aaa
aaa authentication login default group radius local
aaa authentication login console local
OS10(config)# no aaa authentication login default
OS10(config)# do show running-configuration aaa
aaa authentication login default local
aaa authentication login console local
Supported
Releases
10.4.1.0 or later
aaa re-authenticate enable
Requires user re-authentication after a change in the authentication method or server.
Syntax
aaa re-authenticate enable
Parameters None
Default Disabled
Command Mode EXEC
Usage
Information
After you enable user re-authentication and change the authentication method or server, users are
logged out of the switch and are prompted to log in again to re-authenticate. User re-authentication is
triggered by:
Adding or removing a RADIUS server as a configured server host with the radius-server
host command.
766 Security