Radius over TLS

Hi all,
we are currently using privacyidea as 2FA with Radius for Netscaler.
Is it possible to use TLS as transport instead of UDP ? The TLS option is available on Netscaler but I could not found any documentation how to configure that part on privacyidea. I was able to change the port on freeradius but it’s still using UDP.

Thank you
Andre

privacyIDEA uses FreeRADIUS.
FreeRADIUS supports radsec. Take a look in the config file sites-available/tls.

For more details you might want to ask on the freeradius mailing list.

I have privacyidea running inside peap with mschapv2. It should be the same configuration for tls but as suggested it’s all as per standard freeradius configuration.

If I remember on Monday I’ll add a gist to my github as I’d like comments on it anyway.