Skip to Content.

cat-users - Re: [cat-users] multiple realms per institution

cat-users AT lists.geant.org

Subject: The mailing list for users of the eduroam Configuration Assistant Tool (CAT)

List archive


Re: [cat-users] multiple realms per institution


Chronological Thread 
  • From: A.L.M.Buxey AT lboro.ac.uk
  • To: Josh Miller <josh_miller AT thecdm.ca>
  • Cc: "cat-users AT geant.net" <cat-users AT geant.net>
  • Subject: Re: [cat-users] multiple realms per institution
  • Date: Tue, 22 Sep 2015 09:05:45 +0000
  • List-archive: <http://mail.geant.net/pipermail/cat-users/>
  • List-id: "The mailing list for users of the eduroam Configuration Assistant Tool \(CAT\)" <cat-users.geant.net>

Hi,

> I have a question about multiple realms. My org uses 3 e-mail different
> domains, thecdm.ca, gnwtrust.ca and gnwc.ca. Our local FreeRadius will
> authenticate any of the three due to configuration changes I made
> locally... but what will happen when one of my user's visit other eduroam
> sites? Is there any way to associate 3 realms with a single org?

the RADIUS servers at other sites have no clue...all they know is that the
request
has a valid User-Name format and they send the request upstream to their
national proxy.
the national proxy will have a list of all realms that IT knows the target
of...if the realm
isnt one of those, then the request goes off to the international proxies.

basically, so long as YOUR national proxy knows your 3 different realms and
the international
proxies know where to send *.ca then all will be well for your users going
anywhere else in the world.


alan





Archive powered by MHonArc 2.6.19.

Top of Page