85
Parameters
accounting
: Specifies the shared key for secure RADIUS accounting communication.
authentication
: Specifies the shared key for secure RADIUS authentication communication.
cipher
: Specifies the key in encrypted form.
simple
: Specifies the key in plaintext form. For security purposes, the key specified in plaintext form
will be stored in encrypted form.
string
: Specifies the key. This argument is case sensitive.
•
In non-FIPS mode, the encrypted form of the key is a string of 1 to 117 characters. The plaintext
form of the key is a string of 1 to 64 characters.
•
In FIPS mode, the encrypted form of the key is a string of 15 to 117 characters. The plaintext
form of the key is a string of 15 to 64 characters. The plaintext string must contain digits,
uppercase letters, lowercase letters, and special characters.
Usage guidelines
The shared keys configured by using this command apply to all servers in the scheme. Make sure
the settings match the shared keys configured on the RADIUS servers.
The shared keys specified for specific RADIUS servers take precedence over the shared key
specified with this command.
Examples
# In RADIUS scheme
radius1
, set the shared key to
ok
in plaintext form for secure accounting
communication.
<Sysname> system-view
[Sysname] radius scheme radius1
[Sysname-radius-radius1] key accounting simple ok
Related commands
display radius scheme
nas-ip (RADIUS scheme view)
Use
nas-ip
to specify a source IP address for outgoing RADIUS packets.
Use
undo nas-ip
to delete the source IP address of the specified type for outgoing RADIUS packets.
Syntax
nas-ip
{
ipv4-address
|
ipv6
ipv6-address
}
undo nas-ip
[
ipv6
]
Default
The source IP address of an outgoing RADIUS packet is that specified by using the
radius nas-ip
command in system view.
If the
radius nas-ip
command is not configured, the source IP address is the primary IP address of
the outbound interface.
Views
RADIUS scheme view
Predefined user roles
network-admin
mdc-admin
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...