Prefer PFS

When setting the cipher suite, the device usually takes over the same setting as the requesting client. Certain client applications by default require a connection without perfect forward secrecy (PFS), even though both the device and the client are PFS-capable.

This option means that your device always prefers to connect with PFS, regardless of the default setting of the client.

SNMP ID:
2.25.20.5 
Telnet path:
Setup > RADIUS > RADSEC
Possible values:
On
Off
Default:
On