[38936] in Kerberos

home help back first fref pref prev next nref lref last post

Radius failover server for OTP Preauthentication

daemon@ATHENA.MIT.EDU (Abdelkader Chelouah)
Fri Jun 18 12:02:22 2021

To: kerberos@mit.edu
From: Abdelkader Chelouah <a.chelouah@gmail.com>
Message-ID: <d8ab2b13-9053-e668-4838-7765d024bc2e@gmail.com>
Date: Fri, 18 Jun 2021 17:59:45 +0200
MIME-Version: 1.0
Content-Language: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: kerberos-bounces@mit.edu

Hello,


I'm using krb5-1.18.3. When using OTP Preauthentication mechanism, the 
token type is defined according to the following format

[otp]
     <name>  =  {
         server  =  <host:port  or  filename>  (default:  see  below)
         secret  =  <filename>
         timeout  =  <integer>  (default:  5  [seconds])
         retries  =  <integer>  (default:  3)
         strip_realm  =  <boolean>  (default:  true)
         indicator  =  <string>  (default:  none)
     }


It is my understanding that the *server* field (radius server) accepts 
only one *host:port* endpoint. For high availability purpose, is it 
possible to specify multiple endpoint ?


Best regards

________________________________________________
Kerberos mailing list           Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos

home help back first fref pref prev next nref lref last post