2-23The switch can automatically generate the main attributes (NAS-ID, NAS-IP-address and session ID)contained in Accounting-On messages. However, you can also manually configure theNAS-IP-address with the nas-ip command. If you choose to manually configure the attribute, be sure toconfigure an appropriate valid IP address. If this attribute is not configured, the switch will automaticallychoose the IP address of a VLAN interface as the NAS-IP-address.Follow these steps to enable the user re-authentication at restart function:To do… Use the command… RemarksEnter system view system-view —Enter RADIUS scheme view radius schemeradius-scheme-name —Enable the userre-authentication at restartfunctionaccounting-on enable [ sendtimes | interval interval ]By default, this function is disabled.If you use this command without anyparameter, the system will try at most15 times to send an Accounting-Onmessage at the interval of threeseconds.HWTACACS Configuration Task ListComplete the following tasks to configure HWTACACS:Task RemarksCreating a HWTACACS Scheme RequiredConfiguring TACACS Authentication Servers RequiredConfiguring TACACS Authorization Servers RequiredConfiguring TACACS Accounting Servers OptionalConfiguring Shared Keys for RADIUS Messages OptionalConfiguring the Attributes of Data to be Sent to TACACS Servers OptionalConfiguring theTACACS clientConfiguring the Timers Regarding TACACS Servers OptionalConfiguring theTACACS server Refer to the configuration of TACACS servers. —Creating a HWTACACS SchemeThe HWTACACS protocol configuration is performed on a scheme basis. Therefore, you must create aHWTACACS scheme and enter HWTACACS view before performing other configuration tasks.Follow these steps to create a HWTACACS scheme:To do… Use the command… RemarksEnter system view system-view —