3Com Switch 7750 Series
Command Reference Guide – AAA, RADIUS, HWTACACS, EAD Chapter 1 AAA & RADIUS & HWTACACS
Configuration Commands
1-32
undo key { accounting | authentication }
View
RADIUS scheme view
Parameter
accounting: Sets a shared key for the RADIUS accounting packets.
authentication: Sets a shared key for the RADIUS authentication/authorization
packets.
string: Shared key, a character string of up to 16 characters. It is "3Com" by default.
Description
Use the key command to set a shared key for the RADIUS authentication/authorization
packets or accounting packets.
Use the undo key command to restore the corresponding default shared key.
The RADIUS client (that is, the switch) and server adopt MD5 algorithm to encrypt the
RADIUS packets exchanged with each other. The two parties verify the validity of the
exchanged packets by using the encrypted keys that have been set on them, and can
accept and respond to the packets sent from each other only if both of them have the
same encrypted keys. If the authentication/authorization server and the accounting
server are two separate devices and the two servers have different encrypted keys, you
must set the encrypted keys for authentication/authorization packets and accounting
packets respectively on the switch.
Related command: primary accounting, primary authentication, and radius
scheme.
Example
# Set the encrypted key for the RADIUS authentication/authorization packets in
RADIUS scheme radius1 to hello.
<3Com>system-view
System View: return to User View with Ctrl+Z.
[3Com] radius scheme radius1
[3Com-radius-radius1] key authentication hello
# Set the encrypted key for the RADIUS accounting packets in RADIUS scheme
radius1 to ok.
[3Com-radius-radius1] key accounting ok