Command Line Interface

4-90

4

AAA Commands

The Authentication, authorization, and accounting (AAA) feature provides the main
framework for configuring access control on the switch. The AAA functions require
the use of configured RADIUS or TACACS+ servers in the network.

aaa group server

Use this command to name a group of security server hosts. To remove a server
group from the configuration list, enter the no form of this command.
Syntax
[no] aaa group server {radius | tacacs+} group-name
radius - Defines a RADIUS server group.
tacacs+ - Defines a TACACS+ server group.
group-name - A text string that names a security server group.
(Range: 1-7 characters)
Default Setting
None
Command Mode
Global Configuration
Table 4-31 AAA Commands
Command Function Mode Page
aaa group server Groups security servers in to defined lists GC 4-90
server Configures the IP address of a server in a group list SG 4-91
aaa accounting dot1x Enables accounting of 802.1X services GC 4-92
aaa accounting exec Enables accounting of Exec services GC 4-93
aaa accounting commands Enables accounting of Exec mode commands GC 4-94
aaa accounting update Enables periodoc updates to be sent to the accounting
server
GC 4-95
accounting dot1x Applies an accounting method to an interface for 802.1X
service requests
IC 4-95
accounting exec Applies an accounting method to local console, Telnet or
SSH connections
Line 4-96
accounting commands Applies an accounting method to CLI commands entered
by a user
Line 4-96
aaa authorization exec Enables authorization of Exec sessions GC 4-97
authorization exec Applies an authorization method to local console, Telnet or
SSH connections
Line 4-98
show accounting Displays all accounting information PE 4-98