Setting the TACACS+ Key
The key key-string parameter in the tacacs-server command is used to encrypt TACACS+ packets before they are sent over the network. The value for the key key-string parameter on the RUCKUS device should match the one configured on the TACACS+ server. The key key-string can be from 1 through 32 characters in length. It must not contain a space or any of the following characters: #, {, or }.
To specify a TACACS+ server key, enter a command such as following.
device(config)# tacacs-server key rkwong
When you display the configuration of the RUCKUS device, the TACACS+ keys are encrypted.
device(config)# tacacs-server key abc
device(config)# write terminal
...
device(config)# show running-config | inc tacacs
...
tacacs-server host 10.2.3.5 auth-port 49
tacacs key 2$!2d