07-21-2010 03:29 AM - edited 03-10-2019 05:16 PM
Hi
I'd like to account the vpn cisco clients
My config is:
aaa authentication login default group radius local
aaa authentication login aaa_radius group radius local
aaa authorization exec default group radius if-authenticated
aaa authorization network vpn local
aaa accounting exec default
action-type start-stop
group radius
!
aaa accounting network aaa_radius
action-type start-stop
group radius
radius-server host x.x.x.x auth-port 1812 acct-port 1813 key xxxxx
No accounitng packet is send to the radius server, only autthetication packets
Radius server is freeradius
Thank you
pet
Solved! Go to Solution.
07-22-2010 07:50 PM
Hi!
You should add following commands to your configuration:
1. in case of old-style crypto map
crypto map MAP-NAME client accounting list aaa_radius
2. in case of isakmp profiles
crypto isakmp profile PROFILE-NAME
accounting aaa_radius
where MAP-NAME and PROFILE-NAME are real names for you crypto map or isakmp profile respectively.
Hope this helps.
Best regards.
07-22-2010 07:50 PM
Hi!
You should add following commands to your configuration:
1. in case of old-style crypto map
crypto map MAP-NAME client accounting list aaa_radius
2. in case of isakmp profiles
crypto isakmp profile PROFILE-NAME
accounting aaa_radius
where MAP-NAME and PROFILE-NAME are real names for you crypto map or isakmp profile respectively.
Hope this helps.
Best regards.
07-23-2010 12:13 PM
Thank you , now it's working,
all the best : )
pet
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide