Govroam

The Roaming solution for the public sector

User Tools

Site Tools


siteadmin:basic_orps_radsecproxy_configuration
# Some basic logging
LogLevel 3                                                                                
                                                                                          
LogDestination         x-syslog:///LOG_DAEMON                                             

# Prevents RADIUS servers from causing a loop by sending requests back again.
LoopPrevention         On                                                                 
            
# FTICKS is a standardised way of logging authentication attempts.                                                                                                       
FTicksSyslogFacility LOG_LOCAL0                                                           
FTicksReporting Full                                                                      
FTicksMAC VendorKeyHashed                                                                 
FTicksKey arandomsalt                                                                     


# Upstream RADIUS proxies                                                                                   
server  roaming0.govroam.uk {                                                                           
        host 212.219.190.139                                                                 
        type udp                                                                          
        secret XXXX                                                             
        statusServer on   #This checks that status of the adjacent servers.                                                                   
}                                                                                         

server  roaming1.govroam.uk {                                                                       
        host 212.219.209.43                                                                 
        type udp                                                                          
        secret XXXX                                                             
        statusServer on                                                                   
}                                                                                         

server  roaming2.govroam.uk {                                                                       
        host 212.219.247.59                                                               
        type udp                                                                          
        secret XXXX                                                             
        statusServer on                                                                   
}                                                                                         

server  roaming3.govroam.uk {                                                                       
        host 195.194.21.203                                                                 
        type udp                                                                          
        secret XXXX                                                             
        statusServer on                                                                   
}                                                                                         

# IdP for local realm

server  idp.localnet.nhs.uk {                                                                       
        host 1.1.1.1                                                                 
        type udp                                                                          
        secret XXXX                                                             
}                                                                                         



# RADIUS requests will also be received from the national proxies. (Omit for Visited Only)                                                                                      
client  roaming0.govroam.uk {                                                                           
        host 212.219.190.139                                                                 
        type udp                                                                          
        secret XXXX                                                             
}                                                                                         
                                                                                          
client  roaming1.govroam.uk {                                                                           
        host 212.219.209.43                                                                
        type udp                                                                          
        secret XXXX                                                             
}                                                                                         
                                                                                          
client  roaming2.govroam.uk {                                                                           
        host 212.219.247.59                                                                
        type udp                                                                          
        secret XXXX                                                             
}                                                                                         
                                                                                          
client  roaming3.govroam.uk {                                                                           
        host 195.194.21.203                                                                
        type udp                                                                          
        secret XXXX                                                             
}                                                                                         
                                                                                          

# Wireless system                                                                                         
client  nas {                                                                             
        host 10.10.10.10                                                                  
        type udp                                                                          
        secret XXXX                                                             
        fticksVISCOUNTRY GB                                                               
        fticksVISINST 1localnet.nhs.uk       # Adding information to the logs about this client.                                                   
}                                                                                         

#Known local realm (Omit for Visited Only)                                                                                         
realm localnet.nhs.uk {                                                                          
        server idp.localnet.nhs.uk                                                                 
        AccountingResponse On                                                             
}                                                                                         

#Default destination for unknown realms                                                                                          
realm * {                                                                         
        server roaming0.govroam.uk
        server roaming1.govroam.uk
        server roaming2.govroam.uk
        server roaming3.govroam.uk                                                              
        AccountingResponse On                                                             
}                                                                                         
siteadmin/basic_orps_radsecproxy_configuration.txt · Last modified: 2025/08/18 13:11 by admin