cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1547
Views
0
Helpful
1
Replies

tacacs key encryption

srego4
Level 2
Level 2

When I do a sh run, the tacacs key does not get encrypted, even tho I have the service paswd encryption command on (the radius key does!) .. I looked up (and checked with TAC) and found that this is an "Additional" feature that cisco is working on and they have fixed it in some versions... However the version which I use (crypto) does not have this feature yet (12.1 (20)).

Is there anyone who has figured out a way of encrypting this key?

1 Reply 1

Richard Burts
Hall of Fame
Hall of Fame

The best way to encrypt the key is to upgrade to a version of IOS where this feature is implemented. At a customer site where we are running 12.3T the key is encrypted.

Until you do upgrade, any attempt to encrypt the key outside of IOS would probably mean that your router would no longer be successful in communicating with the tacacs server.

HTH

Rick

HTH

Rick