The answer is YES.

I am assuming that you're using Radius server that comes with 
RSA SecurID?  If you're using RSA SecurID version 6.2, then we
are talking about Steelbelt or Juniper Radius (RSA license this
radius portion from Juniper).  

Basically, you're are talking a replica RSA/SecurID and RSA
radius server.  When you build the RSA SecurID/Radius server 
for the first time, it will be your primary server.  In the primary
RSA SecurID Server, there is an option for you to create replica
SecurID/Radius servers (you can have up to ten replica servers
for redundancy, if you have the license for it). You will take the
replica package and install it on another system as your
secondary SecurID/Radius or tertiary SecurID/Radius server.
You get the idea.

Once you generate the sdconf.rec file, it will contain the primary
SecurID/Radius and all other replica servers so that if the primary
server is down, it will use other replica servers for.  Therefore, you
only need ONE sdconf.rec file.  Whenever you add new replica
servers, you have to regenerate the sdconf.rec file.

In summary, only a single sdconf.rec file is needed and it contains
the primary server and all other replica servers.  Think of it like
MS windows Active Directory Servers.  You can have multiple
AD controllers in a domain right?  SecurID/Radius server is no
different.  They just name it differently, replica servers.

Torkel Mathisen <[EMAIL PROTECTED]> wrote: Is it possible to get FW-1 to use 
two RADIUS servers on the same module?

I already have an old RADIUS server on this FW-1 that does work, but now
I'm installing a new RADIUS and wondered if I could use both
simultaneously during the testing.

But I don't know if this is possible due to the /var/ace .rec files.


Regards,
Torkel

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================


       
---------------------------------
Building a website is a piece of cake. 
Yahoo! Small Business gives you all the tools to get online.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to