Key (Tacacs+) - Cisco NCS 5000 Series Manual

System security command reference for cisco ncs 5000 series routers
Hide thumbs Also See for Cisco NCS 5000 Series:
Table of Contents

Advertisement

key (TACACS+)

key (TACACS+)
To specify an authentication and encryption key shared between the AAA server and the TACACS+ server,
use the key (TACACS+) command in TACACS host configuration mode. To disable this feature, use the no
form of this command.
key {0 clear-text-key| 7 encrypted-key| auth-key}
no key {0 clear-text-key| 7 encrypted-key| auth-key}
Syntax Description
0 clear-text-key
7 encrypted-key
auth-key
Command Default
None
Command Modes
TACACS host configuration
Command History
Release
Release 6.0
Usage Guidelines
The TACACS+ packets are encrypted using the key, and it must match the key used by the TACACS+ daemon.
Specifying this key overrides the key set by the tacacs-server key command for this server only.
The key is used to encrypt the packets that are going from TACACS+, and it should match with the key
configured on the external TACACS+ server so that the packets are decrypted properly. If a mismatch occurs,
the result fails.
Task ID
Task ID
aaa
System Security Command Reference for Cisco NCS 5000 Series Routers
34
Authentication, Authorization, and Accounting Commands
Specifies an unencrypted (cleartext) shared key.
Specifies an encrypted shared key.
Specifies the unencrypted key between the AAA server and the
TACACS+ server.
Operations
read, write
Modification
This command was introduced.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents