Commit 4ae47017 authored by venaas's avatar venaas Committed by venaas

config examples

git-svn-id: https://svn.testnett.uninett.no/radsecproxy/trunk@50 e88ac4ed-0b26-0410-9574-a7f39faa03bf
parent 6c2d6612
#Here we list RADIUS clients that we are willing to serve
#
#First field is T or U for TLS or UDP
#Second is address or fqdn, and must match certificate cn for TLS
#Third field is the secret and is optional for TLS
T 2001:db8::1
U 127.0.0.1 secret
T radius.example.com verysecret
#All possible config options are listed below
#
# You must specify at least one of TLSCACertificateFile or TLSCACertificatePath
# for TLS to work. We always verify peer certificate (both client and server)
#TLSCACertificateFile /etc/cacerts/CA.pem
TLSCACertificatePath /etc/cacerts
# You must specify the below for TLS, we will always present our certificate
TLSCertificateFile /etc/hostcertkey/host.example.com.pem
TLSCertificateKeyFile /etc/hostcertkey/host.example.com.key.pem
# You can optionally specify a non-standard UDP port to listen
#UDPServerPort 1814
#Here we list RADIUS servers we will use for different realms
#
#First field is T or U for TLS or UDP
#Second is address or fqdn and optional port, must match certificate cn for TLS
# port is specified using addr:port or domain:port
#Third field is ";" separated list of realms
# * can be used for matching anything (default route)
# realms will be matched in the order specified, using first match
#Fourth field is the secret and is optional for TLS
T [2001:db8::1]:2283 example.com;com
U 127.0.0.1 eduroam.cc secret
T radius.example.com * verysecret
Markdown is supported
0%
or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment