In a WAE 512 running ACNS 18.104.22.168, the tacacs key is not encrypted in the startup configuration. However, when I view the running configuration, the tacacs key is encrypted via astericks. Is there a way to enable the encryption of the key for the startup configuration as well or is this not working as it should be. The only way I found this is that when Ciscoworks compares the running and startup configurations it finds that they are not in sync because the tacacs key is represented differently between the startup and running configurations.
If you configure a key on the Content Engine, it must be the same as the one configured on the TACACS+ servers. The TACACS+ clients and servers use the key to encrypt all TACACS+ packets transmitted. If you do not configure a TACACS+ key, packets are not encrypted. TACACS+ authentication is disabled by default. You can enable TACACS+ authentication and local authentication at the same