Community Edition Limitations

Are there any limitations one should be aware of when operating using the Community Edition? Except not having SLA?
Some features that aren’t available?
Maximum users that can use the system?
Any other limitations that might affect the usage?

There are a lot of questions.

Most of them are e.g. answered in the readme at github.

Please tell, which information you already read and which information you are actually missing.
Then we can add this missing information at the right place.
Thanks

Where is that readme file located? I’ve tried some digging in the main repository and I’ve found some readme files but unfortunately none of them had any reference to the differences between the Commnunity Edition and Enterprise Edition.

Where did you search?
This is important, so that we know were you actually expected such information!?

See here:

That’s the readme file I saw, yeah.

I’ll tailor the question better to my situation because I haven’t found an answer in that file.
For someone using PrivacyIDEA to connect to SSL-VPN through LDAP servers, would someone without a subscription run into trouble? Especially when scaling up?

If I understand correctly, the limitations are described in the chart section in the readme file, right? And those only pertain to plugins such as Credential Provider, etc.

Thank you for asking persinstantly. You are right we should add a note at this very location about the privacyIDEA server itself.

The privacyIDEA Server and the FreeRADIUS plugin have not technical limitation.
The only limit is, that there will be a welcome message (when logging in as admin in the UI), that you should consider getting a subscription.

At what point does the welcome message for the admin UI become enforced? 50 users? Because as of now, I can just tick the hide_welcome_info on in the policy.

Yes. 50 users with active tokens.

Are logins restricted when 50 users is reached or just the message is displayed?

please re-read the previous thread. This should answer your question.

If not - you need to explain why and give more information, how you are using privacyIDEA and corresponding components.
Thanks a lot
Cornelius

We have PI setup using an LDAP resolver so the user can login via FreeRadius using their username and their 2FA code from PI.

I am not sure if this is the best way to achieve this however i think we are hitting a limit of 50 users.

I understand the 50 limit is for the LDAP proxy so it appears this LDAP proxy is part of the LDAP resolver.

The LDAP Proxy has nothing to do with the LDAP resolver.

The LDAP Resolver is a resolver, that the privacyIDEA server uses to resolver usernames to user objects.

You probably have connected your VPN via RADIUS and the privacyIDEA FreeRADIUS Plugin to the privacyIDEA server.
You see — no LDAP proxy involved.

If you need help with understanding, setting up/configuring and running privacyIDEA, NetKnights, the developers of privacyIDEA are here to help on a professional level.

Thank you, and this clarifies things a bit.

In the link above, I cannot see any mention of a user limit for the PI FreeRadius plugin. Can I confirm there is a limit of 50 users, or where I clarify the limitations of this plugin?

Happy to be of a bit help.

Your answer is in this thread:

1 Like