Hi,

In the 7.0.0 docs, page 33 ("Option 1: Authentication against Active 
Directory (AD)") the explanation for one item ("Active Directory 
Server") is missing. Perhaps that can be added..? (I guess we are 
supposed to provide a DC there?)

I would like to ask here how to make our radius/AD as robust as possible 
by making packetfence use all of our three DCs, and not only one 
specific DC.

I guess the fields "Active Directory server" and "DNS Server" are the 
relevant fields then. Can I enter multiple values there..?

With samba/kerberos it's recommended to use dns to locate the kdc. 
("dns_lookup_kdc = true" in krb5.conf) Can I somehow configure 
packetfence similarly..?

For the LDAP usersource we use localhost:389, and use HAProxy to proxy 
that to all available DCs. But how to achieve this level of robustness 
for radius/AD.

Best regards,
MJ

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to