<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Radsec with AWS ALB in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/radsec-with-aws-alb/m-p/5476824#M294058</link>
    <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;we are thinking about implementing radsec, but I don't want to have to change the certificated manually, so I'm wondering if I could simply add an AWS application load balancer between our access points and the radius server. Then we could automatically change the certificates and we don't have to change anything on the radius server...&lt;/P&gt;&lt;P&gt;Your thoughts? &lt;/P&gt;</description>
    <pubDate>Wed, 05 Feb 2025 13:22:19 GMT</pubDate>
    <dc:creator>Fabian11</dc:creator>
    <dc:date>2025-02-05T13:22:19Z</dc:date>
    <item>
      <title>Radsec with AWS ALB</title>
      <link>https://community.cisco.com/t5/wireless/radsec-with-aws-alb/m-p/5476824#M294058</link>
      <description>&lt;P&gt;Hi everyone,&lt;/P&gt;&lt;P&gt;we are thinking about implementing radsec, but I don't want to have to change the certificated manually, so I'm wondering if I could simply add an AWS application load balancer between our access points and the radius server. Then we could automatically change the certificates and we don't have to change anything on the radius server...&lt;/P&gt;&lt;P&gt;Your thoughts? &lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2025 13:22:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/radsec-with-aws-alb/m-p/5476824#M294058</guid>
      <dc:creator>Fabian11</dc:creator>
      <dc:date>2025-02-05T13:22:19Z</dc:date>
    </item>
    <item>
      <title>Re: Radsec with AWS ALB</title>
      <link>https://community.cisco.com/t5/wireless/radsec-with-aws-alb/m-p/5476825#M294059</link>
      <description>&lt;P&gt;I am somewhat confused with what you are describing about manual vs automatic. You still need a complete chain of trust for the connection to be secure all the way through. There are other reasons to want a load balancer, but all items (Dashboard, Load Balancer, Radius Server) need a cert and need to trust the other certs. So the thing that doesn't support automation will still need to be updated.&lt;BR /&gt;&lt;BR /&gt;Are you trying to create a RADSEC connection between just the dashboard and the load balancer and then the load balancer would be having an unencrypted connection to the RADIUS server? I suppose if the load balancer supports that, in theory it would work but I've not heard of that sort of functionality before. &lt;/P&gt;</description>
      <pubDate>Wed, 05 Feb 2025 14:39:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/radsec-with-aws-alb/m-p/5476825#M294059</guid>
      <dc:creator>mloraditch</dc:creator>
      <dc:date>2025-02-05T14:39:49Z</dc:date>
    </item>
  </channel>
</rss>

