TACACS+ Accounting Configuration Example

This section provides a sample TACACS+ client configuration for TACACS+ accounting that:

All other client configuration features use the default settings as described Configuring the TACACS+ Client for Authentication and Authorization or in the Switch Engine 32.2 Command Reference Guide .

configure tacacs-accounting primary server 10.201.31.238 client-ip 10.201.31.85 vr "VR-Default"
configure tacacs-accounting primary shared-secret purple
configure tacacs-accounting secondary server 10.201.31.235 client-ip 10.201.31.85 vr "VR-Default"
config tacacs-accounting secondary shared-secret purple
enable tacacs-accounting 

To display the TACACS+ client accounting configuration, use the show tacacs or the show tacacs-accounting command. The following is sample output from the show tacacs command:

TACACS+: enabled 
TACACS+ Authorization: enabled
TACACS+ Accounting : enabled  
TACACS+ Server Connect Timeout sec: 3 
Primary TACACS+ Server: 
    Server name   :  
    IP address    :  10.201.31.238  
    Server IP Port:  49  
    Client address:  10.201.31.85 (VR-Default)  
    Shared secret :  purple  
Secondary TACACS+ Server:  
    Server name   :  
    IP address    :  10.201.31.235  
    Server IP Port:  49  
    Client address:  10.201.31.85 (VR-Default)  
    Shared secret :  purple  
TACACS+ Acct Server Connect Timeout sec: 3  
Primary TACACS+ Accounting Server:  
    Server name   :  
    IP address    :  10.201.31.238  
    Server IP Port:  49  
    Client address:  10.201.31.85 (VR-Default)  
    Shared secret :  purple  
Secondary TACACS+ Accounting Server:  
    Server name   :  
    IP address    :  10.201.31.235  
    Server IP Port:  49  
    Client address:  10.201.31.85 (VR-Default)  
    Shared secret :  purple