show radius dyn-authorization

Syntax

show radius dyn-authorization

Description

Shows RADIUS dynamic authorization configuration and summarized statistics for all clients configured for dynamic authorization.

Command context

Operator (>) or Manager (#)

Authority

Operators or Administrators or local user group members with execution rights for this command. Operators can execute this command from the operator context (>) only.

Usage

Show command output item identification:
  • Radius Dynamic Authorization: Enabled or Disabled status, system wide.

  • Radius Dynamic Authorization UDP Port: The port used for dynamic authorization (default 3799).

  • Invalid Client Address in CoA Requests: The number of CoA (change of authorization) requests received with an incorrect DAC (dynamic authorization client) address.

  • Invalid Client Address in Disconnect Requests: The number of disconnect requests received with incorrect DAC address.

  • Disconnect Requests: The number of disconnect requests received from the DAC.

  • Disconnect ACKs: The number of Disconnect-ACKs sent to the DAC.

  • Disconnect NAKs: The number of Disconnect-NAKs sent to the DAC.

  • CoA Requests: The number of CoA-requests received from the DAC.

  • CoA ACKs: The number of CoA-ACKs sent to the DAC.

  • CoA NAKs: The number of CoA-NAKs sent to the DAC.

Example

Showing RADIUS dynamic authorization summarized statistics for all clients configured for dynamic authorization:

switch# show radius dyn-authorization
Status and Counters - RADIUS Dynamic Authorization Information

  RADIUS Dynamic Authorization                   : Enabled
  RADIUS Dynamic Authorization UDP Port          : 3799
  Invalid Client Addresses in CoA Requests       : 0
  Invalid Client Addresses in Disconnect Requests: 0

Dynamic Authorization Client Information
=========================================

IP Address          : 1.1.2.1
VRF                 : adm2
Replay Protection   : Disabled
Time Window         : 20
Disconnect Requests : 1
Disconnect ACKs     : 1
Disconnect NAKs     : 0
CoA Requests        : 7
CoA ACKs            : 2
CoA-NAKs            : 5
Shared-Secret       : AQBapb+HsdpqV1Q3CPCBMQTG8ekK1cA+CyD0RvfbeA8BEgikCgAAAJOwZSNzA2SWrLA=


IP Address          : 1.1.2.5
VRF                 : default
Replay Protection   : Enabled
Time Window         : 20
Disconnect Requests : 6
Disconnect ACKs     : 6
Disconnect NAKs     : 0
CoA Requests        : 9
CoA ACKs            : 5
CoA-NAKs            : 4
Shared-Secret       : AQBapb+HsdpqV1Q3CPCBMQTG8ekK1cA+CyD0RvfbeA8BEgikCgAAAJOwZSNzA2SWrLA=


IP Address          : 1.1.2.7
VRF                 : default
Replay Protection   : Disabled
Time Window         : 8
Disconnect Requests : 6
Disconnect ACKs     : 6
Disconnect NAKs     : 0
CoA Requests        : 9
CoA ACKs            : 5
CoA-NAKs            : 4
Shared-Secret       : AQBapb+HsdpqV1Q3CPCBMQTG8ekK1cA+CyD0RvfbeA8BEgikCgAAAJOwZSNzA2SWrLA=