Cisco IOS - Configuring accounting for local accounts.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-12-2013 08:44 AM - edited 03-10-2019 09:05 PM
Hi Guys,
I am currently using TACACS+ through ACS to authenticate network admins when connecting to cisco devices. I also have a few remote devices that are administered by someone else who uses a local account to log in to cisco devices.
I want to set up accounting for these local sessions, how would i go about configuring that?
here is my current AAA model...
aaa new-model
!
!
aaa authentication login default group tacacs+ enable
aaa authentication dot1x default group radius
aaa authorization exec default group tacacs+ if-authenticated
aaa authorization network default group radius
aaa accounting dot1x default start-stop group radius
aaa accounting exec default start-stop group tacacs+
!
Any help would be appreciated.
Randy K.
- Labels:
-
AAA
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-18-2013 05:03 AM
Randy K
Your description of the situation indicates that some users are authenticating with local accounts. But the configuration that you post shows some authentication using TACACS, some authentication using Radius, but nothing using local accounts. Could you give us some information about those users and how they are authenticated?
HTH
Rick
Rick
