Chapter4ServiceConguration
Guidelines
Thesharedkey,challenge,username,andpasswordareencryptedthroughanalgorithm
togeneratecryptographusedforcommunicationbetweenaRADIUSserverandclient.
Theencryptedsharedkeyisdisplayedinciphertextintheshowradiuscommandoutput.
Example
Thefollowingexamplesetstheencryptedsharedkeytoradius-interactivefortheISP
namedtest:
zte(cfg-nas)#radiusisptestsharedsecret-encryptradius-interactive
zte(cfg-nas)#showradius
NASname:ZXSWITCH-NAS
Retransmittimes:3
Retransmittimeout:3
Keeptime:0
IspDelimiter:@
DefaultIsp:zte
Vendorid:3902
Client:192.168.100.140IspName:zte
DefaultIsp:YesDescription:
FullAccounts:NoSharedSecret:E90936C7842A7501489D7E767E85D787|8
2BA236729904C54
AuthenticationserversAuth-port
-------------------------------
192.168.100.1311812
AccountingserversAcct-port
-------------------------------
192.168.100.1321813
4.20.37radiusispfullaccount
Purpose
ThiscommandenablesordisablesfullaccountauthenticationinthespeciedISPdomain.
CommandMode
NAScongurationmode
Syntax
radiusisp<ispname>fullaccount{enable|disable}
4-401
SJ-20131111172707-003|2013-11-27(R1.0)ZTEProprietaryandCondential