When setting the cipher suite, the device usually takes over the same setting as the requesting client. Certain client applications by default require a connection without perfect forward secrecy (PFS), even though both the device and the client are PFS-capable.
This option means that your device always prefers to connect with PFS, regardless of the default setting of the client.
- SNMP ID:
 - 2.25.20.5
 - Console path:
 - Setup > RADIUS > RADSEC
 - Possible values:
 - On
 - Off
 
- Default:
 - On