Installation guide
Authentication Commands
4-109
4
AAA Commands
The Authentication, authorization, and accounting (AAA) feature provides the main
framework for configuring access control on the switch. The AAA functions require
the use of configured RADIUS or TACACS+ servers in the network.
aaa group server
Use this command to name a group of security server hosts and enter Server Group
Configuration mode for the specified group. To remove a server group from the
configuration list, enter the no form of this command.
Syntax
[no] aaa group server {radius | tacacs+} group-name
• radius - Defines a RADIUS server group.
• tacacs+ - Defines a TACACS+ server group.
• group-name - A text string that names a security server group.
(Range: 1-7 characters)
Default Setting
None
Command Mode
Global Configuration
Table 4-1 AAA Commands
Command Function Mode Page
aaa group server Groups security servers in to defined lists GC 4-109
server Configures the IP address of a server in a group list SG 4-110
aaa accounting dot1x Enables accounting of 802.1X services GC 4-111
aaa accounting exec Enables accounting of Exec services GC 4-112
aaa accounting commands Enables accounting of Exec mode commands GC 4-113
aaa accounting update Enables periodic updates to be sent to the accounting
server
GC 4-114
accounting dot1x Applies an accounting method to an interface for 802.1X
service requests
IC 4-114
accounting exec Applies an accounting method to local console, Telnet or
SSH connections
Line 4-115
accounting commands Applies an accounting method to CLI commands entered
by a user
Line 4-115
aaa authorization exec Enables authorization of Exec sessions GC 4-116
authorization exec Applies an authorization method to local console, Telnet or
SSH connections
Line 4-117
show accounting Displays all accounting information PE 4-117