load balancing radius with F5 devices
Alex Sharaz
alex.sharaz at york.ac.uk
Wed Oct 9 11:31:52 CEST 2013
On 9 Oct 2013, at 10:16, Fajar A. Nugraha <list at fajar.net> wrote:
> On Wed, Oct 9, 2013 at 3:41 PM, Alex Sharaz <alex.sharaz at york.ac.uk> wrote:
> While we have 900 switches doing mac and 802.1x based auth, we can have 6000+ users on our wireless network all authenticating to RADIUS via 3 RAS clients. Looking at the back end server log files, it does look as if, in general, all wireless RADIUS auths head for the same back end server.
>
> I was wondering if there's a way off having a bit more granularity in terms of how the f5 load balances incoming RADIUS requests.
>
>
> Have you asked F5?
>
> At the very least, common load balancers (e.g. "keepalived" on linux, a frontend for ipvs) should have the option of distributing traffic to backends based on source IP. Since you say you have 3 RAS clients, it should work somewhat.
>
You had a nose round the f5 site and subscribed to some of the communities. Shall we say that the response wasn't that great!
A
> --
> Fajar
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20131009/20843b6f/attachment-0001.html>
More information about the Freeradius-Users
mailing list