[RADIATOR] Redudant servers with AuthBy DNSROAM

Hugh Irvine hugh at open.com.au
Sat Jan 2 16:15:41 CST 2010


Hello Heikki -

Thanks for your mail.

Your observations are correct, the current code only uses the first DNS entry returned.

Mike is travelling for several weeks and if you want to discuss this it will have to wait until February.

regards

Hugh


On 1 Jan 2010, at 00:14, Heikki Vatiainen wrote:

> Hello,
> 
> experiments with RadSec and AuthBy DNSROAM seem to indicate that
> Radiator does not do fallback to next server even if multiple servers
> are listed for a realm in DNS.
> 
> In other words, if there are servers A and B listed in DNS that could
> handle RadSec for a domain, Radiator always tries e.g., A and never
> switches to B even if A does not answer. It would be useful to have a
> timeout so that next server from DNS could be tried.
> 
> I guess this topic was discussed earlier too:
> http://www.open.com.au/pipermail/radiator/2005-December/012482.html
> 
> How should the dead host scenario with RadSec and DNSROAM be handled? If
> there are two servers what are the options to try the other server if
> the first one does not answer?
> 
> -- 
> Heikki Vatiainen, Arch Red Oy
> +358 44 087 6547
> _______________________________________________
> radiator mailing list
> radiator at open.com.au
> http://www.open.com.au/mailman/listinfo/radiator



NB: 

Have you read the reference manual ("doc/ref.html")?
Have you searched the mailing list archive (www.open.com.au/archives/radiator)?
Have you had a quick look on Google (www.google.com)?
Have you included a copy of your configuration file (no secrets), 
together with a trace 4 debug showing what is happening?

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows, MacOS X.
Includes support for reliable RADIUS transport (RadSec),
and DIAMETER translation agent.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
-
CATool: Private Certificate Authority for Unix and Unix-like systems.





More information about the radiator mailing list