10-04-2023 12:22 PM
Hi to all, we have a working ISE environment with licensed TACACS services.
User that access network devices are successfully authenticated as well as authorized.
Tacacs live logs show correctly user being authenticated as well as being authorized.
Accounting is also activated and users show correctly in TACACS accounting reports.
However as you can in the picture attached there are command accounting report records.
Is there something missing from the network devices ( i mean command wise) or did we do a misconfiguration in ISE?
Thank you,
Ditter
Solved! Go to Solution.
10-04-2023 07:29 PM
how is your AAA config on the device, what device models and IOS Code running on it?
if you have not enabled command account in the device you wont be able to see that information.
example :
aaa accounting commands 0 default start-stop group XXX
aaa accounting commands 1 default start-stop group XXX
aaa accounting commands 15 default start-stop group XXX
10-04-2023 07:29 PM
how is your AAA config on the device, what device models and IOS Code running on it?
if you have not enabled command account in the device you wont be able to see that information.
example :
aaa accounting commands 0 default start-stop group XXX
aaa accounting commands 1 default start-stop group XXX
aaa accounting commands 15 default start-stop group XXX
10-05-2023 02:55 AM
Thanks, the command needed (for my environment) was aaa accounting commands 15 default start-stop group tacacs+
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide