Command Authorization and Accounting for Console Commands

The RUCKUS device supports command authorization and command accounting for CLI commands entered at the console.

Caution: If you have previously configured the device to perform command authorization using a RADIUS server, entering the enable aaa console command may prevent the execution of any subsequent commands entered on the console. This happens because RADIUS command authorization requires a list of allowable commands from the RADIUS server. This list is obtained during RADIUS authentication. For console sessions, RADIUS authentication is performed only if you have configured Enable authentication and specified RADIUS as the authentication method (for example, with the aaa authentication enable default radius command). If RADIUS authentication is never performed, the list of allowable commands is never obtained from the RADIUS server. Consequently, there would be no allowable commands on the console.

To configure the device to perform command authorization and command accounting for console commands, enter the following command.

device# configure terminal
device(config)# enable aaa console