I wanted to get the groups feedback on RADIUS servers.  In the past (NT
4.0/2000 days) I would of used Funk Software's Steel-Belted Radius but
Funk Software has been acquired  by Juniper Networks.  We require a
RADIUS server to authenticate devices connecting to the Sprint 3G/4G
Data link service.  Per the Data Link install guide 

 

 

*         Data Link can support proxy authentication to the customer's
enterprise AAA server running the RADIUS protocol. This equipment is
managed by the customer and resides on their network.

*         Sprint supports RADIUS ports UDP 1812/1813 and 1645/1646 for
authentication and accounting.

*         RADIUS "Time to Live" (TTL) is 500 milliseconds on the Data
Link network and timeouts are set accordingly.  RFC 3344 only supports
CHAP-MD5 and CHAP requires that the customer authentication server have
access to the user password in clear text. 

*         For static IP implementations, the customer will need to add
the Framed-IP-Address RADIUS return list attribute to every user with an
IP as the value.

*         Customer user databases or directories that encrypt the user
password are not supported. 

*         If the customer uses a backend database or LDAP directory, the
passwords must be stored in clear text.

 

I would like a server that will support failover, I see there is within
Windows Server 2008, Network Policy Server (NPS) but I do not know if
this is the best option and I am still researching if NPS will meet
Sprints requirements.  Thanks in advance for your feedback and
recommendations.

Cheers

Ryan

 

 


~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~

---
To manage subscriptions click here: 
http://lyris.sunbelt-software.com/read/my_forums/
or send an email to [email protected]
with the body: unsubscribe ntsysadmin

Reply via email to