Re: Dynamic Clients and ldap threads?

2011-08-15 Thread Alan DeKok
Peter Lambrechtsen wrote: No arguments here with that... I'll have a read through the RFC's and escalate to our hardware vendor.. But I don't like my chances :( If they don't follow the RFCs, then all bets are off. Who the heck are these people? Is there any limit on the file size of the

Dynamic Clients and ldap threads?

2011-08-14 Thread Peter Lambrechtsen
Running Free Radius 2.1.7 against a Novell eDirectory LDAP Database. We're using Dynamic Clients for approx 1200 NAS element devices and looking up the Elements in our LDAP database. Even though we have ldap_connections_number = 50 in the modules/ldap we have issues with the dynamic clients. We

Re: Dynamic Clients and ldap threads?

2011-08-14 Thread Alan DeKok
Peter Lambrechtsen wrote: Even though we have ldap_connections_number = 50 in the modules/ldap we have issues with the dynamic clients. We can increase the number higher but it doesn't seem to make any difference. Or, you can do fewer queries. Each element sends a heartbeat packet to FR

Re: Dynamic Clients and ldap threads?

2011-08-14 Thread Peter Lambrechtsen
On Mon, Aug 15, 2011 at 3:05 PM, Alan DeKok al...@deployingradius.comwrote: Each element sends a heartbeat packet to FR once a second to make sure it's still alive which we capture very early on in the authorize second and send a reject. That's a REALLY bad idea. See RFC 2865 for why