show aaa

Displays information about all TACACS+ and RADIUS servers identified on the device.
Syntax
show aaa
Modes

User EXEC mode

Privileged EXEC mode

Global configuration mode

The show aaa command displays the following information:

Output field Description
Tacacs+ key The setting configured with the tacacs-server key command. At the Super User privilege level, the actual text of the key is displayed. At the other privilege levels, a string of periods (....) is displayed instead of the text.
Tacacs+ retries The setting configured with the tacacs-server retransmit command.
Tacacs+ timeout The setting configured with the tacacs-server timeout command.
Tacacs+ dead-time The setting configured with the tacacs-server dead-time command.
Tacacs+ Server For each TACACS/TACACS+ server, the IP address, port, and the following statistics are displayed:
  • opens - Number of times the port was opened for communication with the server
  • closes - Number of times the port was closed normally
  • timeouts - Number of times the port was closed due to a timeout
  • errors - Number of times an error occurred while opening the port
  • packets in - Number of packets received from the server
  • packets out - Number of packets sent to the server
connection The current connection status. This can be "no connection" or "connection active".
Radius key The setting configured with the radius-server key command. At the Super User privilege level, the actual text of the key is displayed. At the other privilege levels, a string of periods (....) is displayed instead of the text.
Radius retries The setting configured with the radius-server retransmit command.
Radius timeout The setting configured with the radius-server timeout command.
Radius Server For each RADIUS server, the IP address, and the following statistics are displayed:
  • Auth Port - RADIUS authentication port number (default 1645)
  • Acct Port - RADIUS accounting port number (default 1646)
  • opens - Number of times the port was opened for communication with the server
  • closes - Number of times the port was closed normally
  • timeouts - Number of times the port was closed due to a timeout
  • errors - Number of times an error occurred while opening the port
  • packets in - Number of packets received from the server
  • packets out - Number of packets sent to the server
connection The current connection status. This can be "no connection" or "connection active".
Examples

The following example displays information about all TACACS/TACACS+ and RADIUS servers identified on the device.

device(config)# show aaa
Tacacs+ key: foundry
Tacacs+ retries: 1
Tacacs+ timeout: 15 seconds
Tacacs+ Server: 10.95.6.90 Port:49:
			opens=6 closes=3 timeouts=3 errors=0
			packets in=4 packets out=4
no connection
Radius key: networks
Radius retries: 3
Radius timeout: 3 seconds
Radius Server: 10.95.6.90 Auth Port=1645 Acct Port=1646:
			opens=2 closes=1 timeouts=1 errors=0
			packets in=1 packets out=4
no connection