Specifying the shared keys for secure HWTACACS communication

About shared keys for secure HWTACACS communication

The HWTACACS client and server use the MD5 algorithm and shared keys to generate the Authenticator value for packet authentication and user password encryption. The client and server must use the same key for each type of communication.

Perform this task to configure shared keys for servers in an HWTACACS scheme. The keys take effect on all servers for which a shared key is not individually configured.

Restrictions and guidelines

Make sure the shared key configured on the device is the same as the shared key configured on the HWTACACS server.

Procedure

  1. Enter system view.

    system-view

  2. Enter HWTACACS scheme view.

    hwtacacs scheme hwtacacs-scheme-name

  3. Specify a shared key for secure HWTACACS authentication, authorization, or accounting communication.

    key { accounting | authentication | authorization } { cipher | simple } string

    By default, no shared key is specified for secure HWTACACS communication.