Re: Advice needed for radius and very large /etc/passwd file

Joe Portman (baron@aa.net)
Sat, 29 Jun 1996 13:01:11 -0700 (PDT)

On Sat, 29 Jun 1996, Steven P. Crain wrote:

> -----BEGIN PGP SIGNED MESSAGE-----
>
> On Fri, 28 Jun 1996, Mark Colasante wrote:
>
> > 3. Is there an alternative to our current plans for authentication using
> > Radius?
> >
> > 4. To sum it up, what strategy would you use to insure smooth and
> > efficient authentication of dial-up ppp customers using PM30e units and
> > Radius with this number of users?
>
> We are planning to go to having an entry in radius for each user, complete
> with password. This is more efficient than the password file, because it
> can use indexed lookup instead of searching throught the flat password
> file. If you have shadow passwords, it actually has to search though two
> flat files!

Not if you define NBBM and friends when you build shadow, then it uses
DBM files and is smokingly fast. We do it here.

> The big problem with this is that the password can't be encrypted in the
> radius database. I am currently exploring hacks to resolve that.

No need.

Later,
-----------------------------------------------------------------------------
Joe Portman - Alternate Access Inc. Affordable, Reliable Internet
baron@aa.net Seattle: (206) 443-3408 Seattle: (206) 777-7777
Tacoma: (206) 927-6010 Federal Way: (206) 838-8457
Bellevue: (206) 455-8414 Olympia: (360) 458-7279
Enumclaw: (206) 862-9423 Black Diamond : (206) 288-8809
To setup your account: set modem to 8-n-1, login as "new"
For questions or support, call our voice line (206) 728-9585.
-----------------------------------------------------------------------------