[RADIATOR] Redudant servers with AuthBy DNSROAM

Heikki Vatiainen hvn at archred.com
Thu Dec 31 07:14:25 CST 2009


Hello,

experiments with RadSec and AuthBy DNSROAM seem to indicate that
Radiator does not do fallback to next server even if multiple servers
are listed for a realm in DNS.

In other words, if there are servers A and B listed in DNS that could
handle RadSec for a domain, Radiator always tries e.g., A and never
switches to B even if A does not answer. It would be useful to have a
timeout so that next server from DNS could be tried.

I guess this topic was discussed earlier too:
http://www.open.com.au/pipermail/radiator/2005-December/012482.html

How should the dead host scenario with RadSec and DNSROAM be handled? If
there are two servers what are the options to try the other server if
the first one does not answer?

-- 
Heikki Vatiainen, Arch Red Oy
+358 44 087 6547


More information about the radiator mailing list