Setting the TACACS+ Key

The key parameter in the tacacs-server command is used to encrypt TACACS+ packets before they are sent over the network. The value for the key parameter on the RUCKUS device should match the one configured on the TACACS+ server. The key can be from 1 through 32 characters in length and cannot include any space characters.

Note: The tacacs-server key command applies only to TACACS+ servers, not to TACACS servers. If you are configuring TACACS, do not configure a key on the TACACS server and do not enter a key on the RUCKUS device.

To specify a TACACS+ server key, enter a command such as following.

device(config)# tacacs-server key rkwong

When you display the configuration of the RUCKUS device, the TACACS+ keys are encrypted.

It would be good to show the show command used before the ellipses.

device(config)# tacacs-server key abc
device(config)# write terminal
...
tacacs-server host 10.2.3.5 auth-port 49 
tacacs key 2$!2d