Operating rules for RADIUS accounting

  • You can configure up to four types of accounting to run simultaneously: exec, system, network, and command.

  • RADIUS servers used for accounting are also used for authentication.

  • The switch must be configured to access at least one RADIUS server.

  • RADIUS servers are accessed in the order in which their IP addresses were configured in the switch. Use show radius to view the order. As long as the first server is accessible and responding to authentication requests from the switch, a second or third server is not be accessed. For more on this topic, see Changing RADIUS-server access order.

  • If access to a RADIUS server fails during a session, but after the client has been authenticated the switch continues to assume the server is available to receive accounting data. Thus, if server access fails during a session, it does not receive accounting data transmitted from the switch.