Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- home_server tls {
- ipaddr = example.home.server.com
- port = 2083
- type = auth
- secret = radsec
- proto = tcp
- status_check = none
- response_window = 20
- response_timeouts = 1
- zombie_period = 10
- revive_interval = 20
- check_interval = 15
- check_timeout = 4
- num_answers_to_alive = 3
- tls {
- fragment_size = 8192
- cipher_list = "ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-SHA256:ECDHE-ECDSA-AES128-SHA256:ECDHE-RSA-AES128-SHA:ECDHE-ECDSA-AES128-SHA:ECDHE-RSA-AES256-GCM- SHA384:ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-SHA384:ECDHE-ECDSA-AES256-SHA384:ECDHE-RSA-AES256-SHA:ECDHE-ECDSA-AES256-SHA"
- # Inclui arquivo com configuração global de TLS, vale tanto pra EAP quanto para RadSec
- $INCLUDE ../tls-global.conf
- }
- limit {
- max_connections = 16
- lifetime = 30
- idle_timeout = 300
- }
- }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement