TCP transport again

Alan DeKok aland at deployingradius.com
Thu Sep 24 22:37:49 CEST 2009


Gabriel Blanchard wrote:
> mmm too bad Juniper doesn't support Radius over TCP. We have a couple of
> very high load NASes and it would definitely help to provide reliable
> auth/acct.
> 
> actually...is there any NAS that support this yet?

  No.  The only pieces of software that allow TCP transport are:

    Radiator (only TLS over TCP.  I don't think that bare TCP is allowed)

    RadSecProxy (the same)

    FreeRADIUS

  It's not really recommended for NASes to use TCP, *unless* they have
high loads.  See RFC 3539 for details.

  What is "high load"?  100pps?  1000 pps?

  Alan DeKok.




More information about the Freeradius-Devel mailing list