<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Radius - load balance in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128373#M23442</link>
    <description>&lt;P&gt;Hi the_rock,&lt;/P&gt;&lt;P&gt;Exactly, if one server stay down the firewall send the authentication to another server inside de RADIUS group.&lt;/P&gt;</description>
    <pubDate>Mon, 30 Aug 2021 15:16:55 GMT</pubDate>
    <dc:creator>rlamerico</dc:creator>
    <dc:date>2021-08-30T15:16:55Z</dc:date>
    <item>
      <title>Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78213#M15937</link>
      <description>&lt;P&gt;We set up VPN in our environment. And we are using Radius authentication. We will activate MFA, we use Idaptive.&lt;BR /&gt;We have four Radius servers. Is it possible to balance Radius connections? Round-robin?&lt;BR /&gt;R:&lt;/P&gt;&lt;P&gt;Is it possible to check if the server is available before sending the connection?&lt;BR /&gt;R:&lt;/P&gt;</description>
      <pubDate>Fri, 13 Mar 2020 13:58:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78213#M15937</guid>
      <dc:creator>tiagobigode</dc:creator>
      <dc:date>2020-03-13T13:58:42Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78373#M15968</link>
      <description>Yes, you can create RADIUS Server Group--a specific type of object that contains all your RADIUS Server objects.&lt;BR /&gt;However, it's more of an "HA" setup where it tries the most high-priority one first, then if no response, it tries the next one, etc.</description>
      <pubDate>Mon, 16 Mar 2020 02:10:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78373#M15968</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-03-16T02:10:27Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78445#M15973</link>
      <description>&lt;P&gt;I understand, there is no balancing using Round-robin. In our scenario we have 7k users and we are having a crash problem because one server is not able to handle all connections.&lt;BR /&gt;We need a load balancer.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Mar 2020 14:01:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/78445#M15973</guid>
      <dc:creator>tiagobigode</dc:creator>
      <dc:date>2020-03-16T14:01:05Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128191#M23407</link>
      <description>&lt;P&gt;Hello PhoneBoy,&lt;/P&gt;&lt;P&gt;I have made this configuration on my environment, created a RADIUS group, and added both radius servers inside them with priority 1 to first and priority 2 to the second, but when the first server is down firewall doesn´t recognize that this server is down and doesn´t forward the connection to the second server, Does have any specific configuration to do on this case?&lt;/P&gt;&lt;P&gt;PS. If I configure my authentication to use directly the radius servers it works.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Aug 2021 03:36:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128191#M23407</guid>
      <dc:creator>rlamerico</dc:creator>
      <dc:date>2021-08-27T03:36:26Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128192#M23408</link>
      <description>&lt;P&gt;You might need a TAC case to understand why this isn’t working.&lt;/P&gt;</description>
      <pubDate>Fri, 27 Aug 2021 03:59:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128192#M23408</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-08-27T03:59:00Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128230#M23414</link>
      <description>&lt;P&gt;You probably need to adjust the values of&amp;nbsp;&lt;EM&gt;&lt;STRONG&gt;radius_retrant_timeout&amp;nbsp;&lt;/STRONG&gt;&lt;/EM&gt;and&amp;nbsp;&lt;EM&gt;&lt;STRONG&gt;radius_retrant_num&amp;nbsp;&lt;/STRONG&gt;&lt;/EM&gt;to shorten up how long the firewall waits before going on to the next server, see&amp;nbsp;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk42449&amp;amp;partition=Advanced&amp;amp;product=Quantum" target="_blank"&gt;sk42449: How to change a failover timeout of RADIUS Server&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 27 Aug 2021 12:02:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128230#M23414</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-08-27T12:02:57Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128366#M23439</link>
      <description>&lt;P&gt;Hi Timothy_Hall,&lt;/P&gt;&lt;P&gt;This information is not clear to me ( print with my configuration below ), today I have an MFA configured on these RADIUS servers and my user have until 60 seconds to inform the radius challenger and as I could understand field "radius_user_timeout" is responsible by it, but I have 750 seconds configured on this field.&lt;/P&gt;&lt;P&gt;Do you know how values I need to configure on properties below to have a failover in 60 seconds for example?&lt;/P&gt;&lt;P&gt;radius_retrant_num&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;radius_retrant_timeout&lt;BR /&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-center" image-alt="Screenshot_225.png" style="width: 826px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/13571i57FD4C52DCD3B362/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot_225.png" alt="Screenshot_225.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 14:50:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128366#M23439</guid>
      <dc:creator>rlamerico</dc:creator>
      <dc:date>2021-08-30T14:50:51Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128369#M23440</link>
      <description>&lt;P&gt;You want radius auth request to fail over to your other server in 60 seconds if first one time sout or does not respond, correct? Thats the setting you are looking for?&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 15:08:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128369#M23440</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-08-30T15:08:16Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128372#M23441</link>
      <description>&lt;P&gt;Im pretty sure its retrant timeout setting, but you may wish to confirm 100% with TAC.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 15:16:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128372#M23441</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-08-30T15:16:55Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128373#M23442</link>
      <description>&lt;P&gt;Hi the_rock,&lt;/P&gt;&lt;P&gt;Exactly, if one server stay down the firewall send the authentication to another server inside de RADIUS group.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 15:16:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128373#M23442</guid>
      <dc:creator>rlamerico</dc:creator>
      <dc:date>2021-08-30T15:16:55Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128375#M23443</link>
      <description>&lt;P&gt;So phoneboy mentioned last year to create radius group for this, which works 100%, as I seen it with customers before, but again, for timeout setting, Im 95% sure its what I advised, but to be 100% positive, maybe better get confirmation from TAC.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 15:19:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128375#M23443</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-08-30T15:19:11Z</dc:date>
    </item>
    <item>
      <title>Re: Radius - load balance</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128400#M23449</link>
      <description>&lt;P&gt;Thanks everyone,&lt;/P&gt;&lt;P&gt;I will raise a case with TAC to check this issue.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Aug 2021 02:21:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Radius-load-balance/m-p/128400#M23449</guid>
      <dc:creator>rlamerico</dc:creator>
      <dc:date>2021-08-31T02:21:38Z</dc:date>
    </item>
  </channel>
</rss>

