Radius accounting – Allied Telesis AT-S63 User Manual

Page 373

Advertising
background image

AT-S63 Management Software Features Guide

Section VIII: Port Security

373

RADIUS Accounting

The AT-S63 Management Software supports RADIUS accounting for
switch ports set to the Authenticator role. This feature sends information to
the RADIUS server about the status of its supplicants. You can view this
information on the RADIUS server to monitor network activity and use.

The switch sends accounting information to the RADIUS server when one
of the following events occur:

ˆ

Supplicant logs on

ˆ

Supplicant logs off

ˆ

A change in the status of an Authenticator port during an active
Supplicant session (for example, the port is reset or is changed from
the Authenticator role to None role while a Supplicant is logged on)

The information sent by the switch to the RADIUS server for an event
includes:

ˆ

Port number where the event occurred

ˆ

The date and time when the event occurred

ˆ

The number of packets transmitted and received by the switch port
during a supplicant’s session. (This information is sent only when the
client logs off.)

You can also configure the accounting feature to send interim updates so
you can monitor which clients are still active.

Here are the guidelines to using the accounting feature:

ˆ

The AT-S63 Management Software supports the Network level of
accounting, but not the System or Exec.

ˆ

This feature is only available for ports operating in the Authenticator
role. No accounting is provided for ports operating in the Supplicant or
None role.

ˆ

You must configure 802.1x Port-based Network Access Control as
explained in this chapter and designate the Authenticator ports.

ˆ

You must also specify from one to three RADIUS servers.

Advertising