Re: (PM) RADIUS: Best place for passwords

Thomas C Kinnen (tkinnen@creativeanime.com)
Fri, 19 Jun 1998 22:38:40 -0400

This really should be on portmaster-radius

>How about some debate and discussion about the best place to store
>passwords for Radius. Two choices are "Auth-Type = System"
>and "Password = "gakk" ".

I go for Auth-Type = System. In an NT environment you can have a PDC and
BDC and then if one goes down you don't have to worry about if you've copied
the users file over or any of that stuff. Normal replication takes care of
it. Also as the user file gets larger if you still run in flat file mode
you get slower and slower. Draw backs are that you need a good backup of
the SAM or you can be SOL. Good side, may of my other utils and services can
key off the SAM also so if I disable the account in the SAM there E-Mail is
disabled (Post.Office) Front Page Extensions are disabled, FTP Access
disabled and so on. I don;t have to work about checking all the Passwords.

-tk
-----
Thomas Kinnen - tkinnen@sobhrach.com - tkinnen@creativeanime.com
Note the new E-Mail Addresses. tkinnen@usacomputers.net will work for a
few more months.

-
To unsubscribe, email 'majordomo@livingston.com' with
'unsubscribe portmaster-users' in the body of the message.
Searchable list archive: <URL:http://www.livingston.com/Tech/archive/>