Chapter 4 Service Configuration
Guidelines
The shared key, challenge, username, and password are encrypted through an algorithm
to generate cryptograph used for communication between a RADIUS server and client.
The encrypted shared key is displayed in ciphertext in the
show radius
command output.
Example
The following example sets the encrypted shared key to radius-interactive for the ISP
named test:
zte(cfg-nas)#radius isp test sharedsecret-encrypt radius-interactive
zte(cfg-nas)#show radius
NAS name
: ZXSWITCH-NAS
Retransmit times
: 3
Retransmit timeout: 3
Keep time
: 0
Isp Delimiter
: @
Default Isp
: zte
Vendor id
: 3902
Client
: 192.168.100.140 IspName
: zte
DefaultIsp
: Yes
Description :
FullAccounts: No
SharedSecret: E90936C7842A7501489D7E767E85D787|8
2BA236729904C54
Authentication servers
Auth-port
----------------------
---------
192.168.100.131
1812
Accounting servers
Acct-port
----------------------
---------
192.168.100.132
1813
4.20.37 radius isp fullaccount
Purpose
This command enables or disables full account authentication in the specified ISP domain.
Command Mode
NAS configuration mode
Syntax
radius isp
<
ispname
>
fullaccount
{
enable
|
disable
}
4-401
SJ-20131111172707-003|2013-11-27 (R1.0)
ZTE Proprietary and Confidential