< Home

HWTACACS User Management Security

Security Policy

The Huawei Terminal Access Controller Access Control System (HWTACACS) protocol is an enhancement of TACACS+. Similar to Remote Authentication Dial In User Service (RADIUS), HWTACACS uses the client-server model to implement multiple AAA functions and can be used for authentication, authorization, and accounting of Point-to-Point Protocol (PPP) and login users.

HWTACACS uses the Transmission Control Protocol (TCP), which is more reliable than RADIUS transmission over the User Datagram Protocol (UDP). HWTACACS encrypts standard HWTACACS headers and bodies by using MD5, ensuring high transmission security. The shared keys for packet encryption can be configured by users.

Configuration Method

Set the shared key to Admin@123. This key is used for MD5 encryption of packets transmitted over HWTACACS. Use the cipher keyword when configuring the shared key so that the encrypted key is displayed during configuration query.

<HUAWEI> system-view
[HUAWEI] hwtacacs-server template test1
[HUAWEI-hwtacacs-test1] hwtacacs-server shared-key cipher Admin@123 
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic