show network-access aaa subscribers
Syntax
show network-access aaa subscribers
<logical-system logical-system-name>
<routing-instance routing-instance-name>
<statistics>
<username>
<session-id session-id-number detail>
Description
Display subscriber-specific AAA statistics.
Options
logical-system logical-system-name | (Optional) List subscribers in the specific logical system. |
routing-instance routing-instance-name | (Optional) List subscribers for the specific routing instance. If you do not specify a routing instance name, the default routing instance is assumed. |
statistics | (Optional) Display statistics for the subscriber events. |
username | (Optional) Display information for the specified subscriber. |
session-id session-id-number detail | (Optional) Display information for the specified session ID. |
Required Privilege Level
view
Output Fields
Table 1 lists the
output fields for the show network-access aaa subscribers
command. Output fields are listed in the approximate order in which
they appear.
Field Name |
Field Description |
---|---|
|
Number of authentication requests challenged by the authentication server for this subscriber. |
|
Number of challenge responses sent by the subscriber to the authentication server. |
|
Number of accounting start requests generated by the AAA framework for this subscriber. |
|
Number of accounting start requests that failed to make it to the accounting server for this subscriber. |
|
Number of accounting start requests acknowledged by the accounting server for this subscriber. |
|
Number of accounting interim requests generated by the AAA framework for this subscriber. |
|
Number of accounting interim requests that failed to make it to the accounting server for this subscriber. |
|
Number of accounting interim requests acknowledged by the accounting server for this subscriber. |
|
Number of reauthentication requests received by the authentication server. |
|
Number of successful reauthentication requests granted by the authentication server. |
|
Number of reauthentication requests terminated by the authentication server. |
|
Name of the subscriber service. |
|
Number of requests to create the service. |
|
Number of requests to delete the service. |
|
Number of times the service request was timed out. |
|
Type of client; for example, DHCP, Mobile IP, PPP. |
|
ID of the subscriber session. |
|
How long the session has been up, in HH:MM:SS. |
|
Status of accounting, and type of accounting if accounting is on. |
|
Username of the subscriber session. |
|
AAA framework for the subscriber of logical system or routing instance. |
|
Target framework for the subscriber of logical system or routing instance. |
|
Profile of the subscriber. |
|
ID of the subscriber session for accounting. |
|
ID of the subscriber session for multiple accouting. |
|
IPv4 address of the subscriber. |
|
IPv6 address of the subscriber. |
|
IPv6 prefix of the subscriber. |
|
State of subscriber session authentication. |
|
State of subscriber session accounting. |
|
Type of subscriber provisioning. |
Sample Output
- show network-access aaa subscribers logical-system
- show network-access aaa subscribers logical-system routing-instance
- show network-access aaa subscribers statistics username
- show network-access aaa subscribers username
- show network-access aaa subscribers session-id 26 detail
- show network-access aaa subscribers (Tenant systems)
- show network-access aaa subscribers (Tenant systems)
show network-access aaa subscribers logical-system
user@host> show network-access aaa subscribers logical-system Username Client type Logical system/Routing instance user61@example.net ppp default 00010e020304.1231 dhcp isp-bos-metro-12:isp-cmbrg-12 user54@example.com dhcp default:isp-gtown-r3-00 0020df980102.2334 dhcp isp-bos-metro-16:isp-cmbrg-12
show network-access aaa subscribers logical-system routing-instance
user@host> show network-access aaa subscribers logical-system isp-bos-metro-16 routing-instance isp-cmbrg-12-32 Username Client type Logical system/Routing instance 00010e020304.1231 dhcp isp-bos-metro-12:isp-cmbrg-12 user54@example.com dhcp default:isp-gtown-r3-00 0020df980102.2334 dhcp isp-bos-metro-16:isp-cmbrg-12
show network-access aaa subscribers statistics username
user@host> show network-access aaa subscribers statistics username 00010e020304.1231 Authentication statistics Challenge requests: 0 Challenge responses: 0 Accounting statistics START sent successfully: 1 START send failures: 0 START ack received: 1 INTERIM sent successfully: 0 INTERIM send failures: 0 INTERIM ack received: 0 Re-authentication statistics Requests received: 0 Sucessfull responses: 0 Aborts handled: 0 Service statistics Service name: filter-serv Creation requests: 1 Deletion requests: 0 Request timeouts: 0 Service name: filter-serv2 Creation requests: 144 Deletion requests: 0 Request timeouts: 144
show network-access aaa subscribers username
user@host> show network-access aaa subscribers username user80@example.net Logical system/Routing instance Client type Session-ID Session uptime Accounting isp-bos-metro-16:isp-cmbrg-12 dhcp 7 01:12:56 on/volume Service name Service type Quota Accounting I-Cast volume 1200 Mbps on/volume+time Voip on/volume GamingBurst time 6000 secs on/volume
show network-access aaa subscribers session-id 26 detail
The following command output is seen when only an IPv4 client is associated with the session:
user@host> show network-access aaa subscribers session-id 26 detail Type: dhcp Stripped username: my-customer AAA Logical system/Routing instance: default:default Target Logical system/Routing instance: default:default Access-profile: AccessProfile Session ID: 26 Accounting Session ID: 26 Multi Accounting Session ID: 0 IP Address: 10.0.0.2 Authentication State: AuthStateActive Accounting State: Acc-Interim-Sent Provisioning Type: None
The following command output is seen when IPv6 client logs in (after IPv4 association) and is associated with the same session ID:
user@host> show network-access aaa subscribers session-id 26 detail Type: dhcp Stripped username: my-customer AAA Logical system/Routing instance: default:default Target Logical system/Routing instance: default:default Access-profile: AccessProfile Session ID: 26 Accounting Session ID: 26 Multi Accounting Session ID: 0 IP Address: 10.0.0.2 IPv6 Address: 2001:db8:0:8003::2 IPv6 Prefix: 2001:db8:ffff:0:4::/64 Authentication State: AuthStateActive Accounting State: Acc-Interim-Sent Provisioning Type: None
show network-access aaa subscribers (Tenant systems)
user@host:TSYS1> show network-access aaa subscribers Username Logical system/Routing instance Client type Session-ID userX default:TSYS1-ri xauth 1
show network-access aaa subscribers (Tenant systems)
user@host> show network-access aaa subscribers session-id 1 detail Type: xauth Username: userX Stripped username: userX AAA Logical system/Routing instance: default:TSYS1-ri Target Logical system/Routing instance: default:TSYS1-ri Access-profile: ap1 + Tenant: TSYS1 Session ID: 1 Multi Accounting Session ID: 0 IP Address: 192.0.2.0 Authentication State: AuthStateActive Accounting State: Acc-Init Converted to time accounting: no Provisioning Type: None user@host> show network-access aaa subscribers session-id 2 detail Type: xauth Username: userY Stripped username: userY AAA Logical system/Routing instance: default:TSYS2-ri Target Logical system/Routing instance: default:TSYS2-ri Access-profile: ap1 + Tenant: TSYS2 Session ID: 2 Multi Accounting Session ID: 0 IP Address: 192.0.2.1 Authentication State: AuthStateActive Accounting State: Acc-Init Converted to time accounting: no Provisioning Type: None
Release Information
Command introduced in Junos OS Release 9.1.
Command updated with session-id session-id-number detail
in Junos OS Release 17.3.