*** anaximandro (be1bfd83@gateway/web/freenode/ip.190.27.253.131) has joined #wikid | 00:07 | |
anaximandro | Good Evenning | 00:07 |
---|---|---|
anaximandro | is there anyone for some help | 00:08 |
anaximandro | hallo | 00:11 |
*** bman1 (~burrutia@64.19.224.6) has joined #wikid | 01:32 | |
*** anaximandro has quit (Quit: Page closed) | 01:33 | |
bman1 | crud i just realized the domain code is created off the public facing ip, if I have 2 nodes behind a vip can that domain code still be shared? | 01:33 |
*** testuser (46bb12a8@gateway/web/freenode/ip.70.187.18.168) has joined #wikid | 16:20 | |
testuser | hello, can i have wikid email the token or do i have to have the soft token apps | 16:27 |
testuser | also to setup this http://www.wikidsystems.com/support/wikid-support-center/installation-how-tos/how-to-let-users-add-themselves-using-ad-credentials do i need LDAP enabled on my wikid server | 16:30 |
testuser | and when do i setup auth to my ad server? it doesnt support anonymous ldap requests | 16:31 |
*** jojo_ (4597c898@gateway/web/freenode/ip.69.151.200.152) has joined #wikid | 17:28 | |
jojo_ | I would like to add wikid two factor authentication to my squid proxy server. Can this be done with the wikid Community edition or do I need the enterprise edition? | 17:31 |
joevano | jojo_: you should be able to use the community edition | 17:59 |
joevano | testuser: you must have a client either on a mobile device or with PC based client | 18:00 |
joevano | jojo_: here are the differences between the Enterprise and Community editions http://www.wikidsystems.com/community-version/support/wikid-support-center/faq/whats-the-difference-between-the-community-release-and-enterprise-release/?searchterm=what%20is%20the%20difference | 18:03 |
jojo_ | thats great news! very cool program/concept. Thanks! | 18:09 |
joevano | jojo_: here is documentation on making that happen http://www.howtoforge.com/squid-with-two-factor-authentication-from-wikid | 18:09 |
joevano | testuser: see the comments here: http://www.wikidsystems.com/support/wikid-support-center/installation-how-tos/how-to-let-users-add-themselves-using-ad-credentials | 18:10 |
joevano | for LDAPS... looks like you will need to add a certificate to the Wikid server | 18:11 |
joevano | other than that you will have to wait for 'nowen' for real support | 18:13 |
joevano | he is traveling this week and I am just an end user trying to help out | 18:13 |
jojo_ | no prob! u answered my question | 18:13 |
jojo_ | thanks a bunch | 18:14 |
joevano | great, glad I could help | 18:14 |
*** jojo_ has quit (Quit: Page closed) | 18:14 | |
joevano | this is really great software, works perfectly for us | 18:14 |
bman1 | domain code for wikid server is created off the ip in my case the public facing ip on the firewall, if I have 2 nodes behind a vip can that domain code still be shared? | 18:48 |
joevano | bman1: nowen can give you another "domain code" they cannot be shared but can be hosted on the same server | 18:54 |
joevano | he just needs to add a dns entry that points to your server | 18:55 |
bman1 | well ok so let me explain better | 18:55 |
bman1 | the point is to have firewall-ip->load balancer-ip-> 2 real servers ( redundancy) | 18:56 |
bman1 | so if your saying domain code cannot be shared then that wont work correct? i.e. to us dns rr is not an option and not redundant | 18:56 |
bman1 | and this implementation uses NPS & AD but this part of it we would want to be redundant and load balanced | 18:58 |
joevano | ah... that was not what I was thinking | 19:01 |
joevano | right.. that is going to have to wait for nowen.. way over my head on that one | 19:03 |
bman1 | ok, i guess in meantime then I will try and continue w my setup to see if it works | 19:04 |
joevano | i was saying that 1 server could host 2 domains | 19:04 |
bman1 | yes i understand that part | 19:04 |
bman1 | but for fault tolerance my company wants me to look at a load balanced option | 19:04 |
joevano | I am guessing that there is going to have to be some trickery going on because of the server keys | 19:05 |
joevano | but I think it can be done | 19:05 |
joevano | bman1: have you seen this... comments get more relevant farther down http://wikid-strong-authentication-forums.1491522.n2.nabble.com/wikid-enterprise-replication-and-failover-td4978026.html | 19:10 |
joevano | ah here we go http://www.wikidsystems.com/support/wikid-support-center/installation-how-tos/how-to-configure-the-wikid-strong-authentication-system-for-replication/?searchterm=replication | 19:11 |
joevano | hope that helps | 19:11 |
bman1 | k thanks ill look | 19:13 |
bman1 | 1st like seems to indicate postgres and be active-standby which is not desired on our part but may look into it more | 19:16 |
bman1 | perhaps I am mistaken in thinking the postgres setup for replication cannot be done with NPS? | 19:17 |
joevano | bman1: yes it seems to bo active/standby for enterprise edition | 19:18 |
bman1 | basically since NPS and Radius use AD the only part that seems would be a conflict would be the domaincode hence my initial question about that, I'll look into it more though i have 2 more test systems besides the working nps i have | 19:19 |
joevano | k.. not sure if nick will be available this week... last week he said he would be traveling | 19:20 |
bman1 | ok np | 19:20 |
joevano | I took that to mean vacation time | 19:20 |
bman1 | ok ttyl thanks | 19:20 |
*** bman1 has parted #wikid (None) | 19:20 | |
*** testuser has quit (Quit: Page closed) | 20:50 | |
*** bman1 (~burrutia@64.19.224.6) has joined #wikid | 23:53 |
Generated by irclog2html.py 2.11.0 by Marius Gedminas - find it at mg.pov.lt!