[EXTERNAL] Understanding FreeRADIUS statistics
dominic.stalder at unibe.ch
dominic.stalder at unibe.ch
Thu Jun 27 08:22:41 UTC 2024
Hi Alan and Alister
Two days ago I removed the symlink /etc/freeradius/mods-enabled/cache_eap, but today I found the following cache config lines in /etc/freeradius/mods-available/eap:
tls-config tls-common {
private_key_file = ${certdir}/server.key
certificate_file = ${certdir}/server.crt
...
cache {
enable = no
lifetime = 12 # hours
max_entries = 0
name = "EAP module"
persist_dir = "${logdir}/tlscache"
}
}
Should I remove those lines as well or what is the recommended configuration for the tls-config part?
Thanks and regards
Dominic
Am 25.06.24, 16:59 schrieb "Stalder, Dominic (ID)" <dominic.stalder at unibe.ch <mailto:dominic.stalder at unibe.ch>>:
Thanks.
> Just disable it. I don't think it really helps.
Done = disabled.
Am 25.06.24, 15:53 schrieb "Freeradius-Users im Auftrag von Alan DeKok" <freeradius-users-bounces+dominic.stalder=unibe.ch at lists.freeradius.org <mailto:unibe.ch at lists.freeradius.org> <mailto:unibe.ch at lists.freeradius.org <mailto:unibe.ch at lists.freeradius.org>> im Auftrag von aland at deployingradius.com <mailto:aland at deployingradius.com> <mailto:aland at deployingradius.com <mailto:aland at deployingradius.com>>>:
On Jun 25, 2024
>
> If I understand you correctly, we should disable the EAP caching completely? As I said, I did not know about it before and I am absolutely willing to keep the configuration as simple as possible, if you recommend that!
Just disable it. I don't think it really helps.
> If you recommend to disable it, is the following correct:
>
> 1. Delete the symlink /etc/freeradius/mods-enabled/cache_eap
>
> 2. Restart the FreeRADIUS service
Yes.
Alan DeKk.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html <http://www.freeradius.org/list/users.html> <http://www.freeradius.org/list/users.html> <http://www.freeradius.org/list/users.html;>
More information about the Freeradius-Users
mailing list