Displaying TACACS+ Statistics and Configuration Information

The show aaa command displays information about all TACACS+ and RADIUS servers identified on the device.

device# show aaa
Tacacs+ key: foundry
Tacacs+ retries: 1
Tacacs+ timeout: 15 seconds
Tacacs+ dead-time: 3 minutes
Tacacs+ Server: 10.95.6.90 Port:49:
                opens=6 closes=3 timeouts=3 errors=0
                packets in=4 packets out=4
no connection
Radius key: networks
Radius retries: 3
Radius timeout: 3 seconds
Radius dead-time: 3 minutes
Radius Server: 10.95.6.90 Auth Port=1812 Acct Port=1813:
                opens=2 closes=1 timeouts=1 errors=0
                packets in=1 packets out=4
no connection

The following table describes the TACACS+ information displayed by the show aaa command.

Output of the show aaa Command for TACACS+

Field

Description

Tacacs+ key

The setting configured with the tacacs-server key command. At the Super User privilege level, the actual text of the key is displayed. At the other privilege levels, a string of periods (....) is displayed instead of the text.

Tacacs+ retries

The setting configured with the tacacs-server retransmit command.

Tacacs+ timeout

The setting configured with the tacacs-server timeout command.

Tacacs+ dead-time

The setting configured with the tacacs-server dead-time command.

Tacacs+ Server

For each TACACS+ server, the IP address, port, and the following statistics are displayed:

  • opens - Number of times the port was opened for communication with the server
  • closes - Number of times the port was closed normally
  • timeouts - Number of times port was closed due to a timeout
  • errors - Number of times an error occurred while opening the port
  • packets in - Number of packets received from the server
  • packets out - Number of packets sent to the server

connection

The current connection status. This can be "no connection" or "connection active."

The show web command displays the privilege level of Web Management Interface users.

device# show web
HTTP server status: Enabled
HTTPS server status: Enabled

Web session management:
User    Privilege     IP address     Timeout(secs) CONNECTION
admin   READ-WRITE    172.26.78.58    10           HTTP
admin   READ-WRITE    10.198.138.97   10           HTTPS