Proxy Settings

Proxy settings are available under https://YOURNAME.radius-as-a-service.com/settings/proxy

Proxies are necessary in case your authenticators (e.g. APs, switches, ...) only support traditional RADIUS / UDP for AAA. The proxies faciliate the protocol conversion from RADIUS to RadSec so that your equipment can properly communicate with RADIUSaaS core server(s), that exclusively support RadSec / TCP for AAA.

Architecture

Since there are at least two RADIUS-speaking public IP addresses included in your subscription, we strongly recommend to configure those two IP addresses so they can be used as primary and secondary RADIUS server on your network gear and appliances. Thereby, the second public IP address should be located in a different geo-region than the primary address.

Performance

Each proxy can handle up to 1,500 concurrent connections flawlessly.

This corresponds to a time-based performance of 10,000 authentications per minute per proxy.

Scaling

We have never never seen any issues if you choose Europe as proxy location, no matter where your clients are located. Nonetheless it can increase your performance to choose the Proxy at one location which is as close as possible to your offices and sites.

To ensure smooth operation, consider the following number of proxies based on the number of users you have licensed (your needs may change if your offices are more globally distributed):

UserProxy Count

50 - 2,500

2

2,501 - 10,000

3

10,001 - 25,000

4

25,001 - 50,000

6

50,001 - 100,000

10

Regions

You can deploy the proxy servers in the following regions:

ContinentRegion

Africa

Johannesburg

Asia

Bangalore Singapore TelAviv Tokio

Australia

Sydney

Europe

Frankfurt London Madrid Stockholm

North America

Dallas New York Seattle Toronto

South America

Santiago

Load balancing

If you have a setup with more than 1,000 users, we highly recommend to ensure, that your network equipment will send equal amounts of authentications to each proxy.

For network equipment, where you can define the priority of the RADIUS servers, you can ensure load-balancing by defining different priority orders for your different network equipment instances.

Example: You have 5 WiFi controllers and 3 RADIUS Proxies. You may then configure the following priority orders in your WiFi controllers:

Wifi Controller #RADIUS Priority Order

1 and 4

1, 2, 3

2 and 5

2, 3, 1

3

3, 1, 2

Properties

The IP address, ports and shared secret of the RADIUS Proxies will be displayed under Server Settings > Ports and IP Addresses.

Add

To Add a new proxy, simply click Add, choose your Region and click Create.

After the installation has finished, it can take up to 15 minutes until your proxy has established a connection to your RADIUS server.

Delete

To Delete a proxy, simply click Delete of corresponding table row and confirm your choice.

Last updated