Administrator Guide

Security Commands 948
Syntax
radius server key [ 0 | 7 ]key-string
no radius server key
0—The key string that follows is the unencrypted shared secret. The
length is 1–128 characters.
7—The key string that follows is the encrypted shared secret. The length is
exactly 256 characters.
key-string — The key string in encrypted or unencrypted form. In
encrypted form, it must be 256 characters in length. In unencrypted form,
it may be up to 128 characters in length.
Default Configuration
The default is an empty string.
Command Mode
Global Configuration
User Guidelines
In an Access-Request, encrypted passwords are sent using the RSA Message
Digest algorithm (MD5).
If no encryption parameter (7) is present, the key string is interpreted as an
unencrypted shared secret.
Keys are always displayed in their encrypted form in the running
configuration.
The encryption algorithm is the same across switches. Encrypted passwords
may be copied from one switch and pasted into another switch configuration.
Command History
Updated in version 6.3.0.1 firmware.
Example
The following two examples globally configure the RADIUS server key for all
configured servers. The two examples are identical in effect.
console(config)#radius server key “This is a key string”