Nas Type

Roberto Greiner mrgreiner at gmail.com
Tue Jul 31 14:39:13 CEST 2007


YvesDM wrote:
>
>
> On 7/30/07, *Roberto Greiner* <mrgreiner at gmail.com
> <mailto:mrgreiner at gmail.com>> wrote:
>
>     YvesDM wrote:
>     > Hi Robert,
>     >
>     >
>     > As for m0n0wall (and I guess pfsense too), you can also use the
>     > "diable concurrent logins" option in the CP setup.
>     > This way there will never be simultaneous use from the same nas.
>     >
>     > Kind Regards,
>     > Yves
>     >
>     Yes, I've seen that option, and I actually have it enabled. What I
>     don't
>     like with it, is that instead of blocking a user, it accepts the new
>     session and simply disconnects the session that was active.
>
>     Anyway, thank you very much,
>
>     Roberto
>
>
>
> Yes indeed, and that way they will never share their credentials again
> :-)
> Anyway if you plan to use simultaneous use on your radius, and have
> the "re-authenticate every minute" option in monowall enabled,
> you will need to allow at least 3 (or 2 don't quite remember) sessions
> or re-authentication will fail and user gets logged out after 1 minute.
>
> Kind regards,
> Yves
Yes, I saw that option, but my monowall server has a peak usage of over
200 simultaneous users. Enabling that would put some strain on
freeradius (don't need to say, I know it would take it easily), but
mostly on monowall. With 200 users we already had to make some
modification to make it stay stable. That strain would probably kill it. :-(

Thanks anyway,

Roberto

-- 
  -----------------------------------------------------
                Marcos Roberto Greiner

   Os otimistas acham que estamos no melhor dos mundos
    Os pessimistas tem medo de que isto seja verdade
                                       Murphy
  -----------------------------------------------------




More information about the Freeradius-Users mailing list