RadSec

RadSec is a protocol for transporting RADIUS datagrams over TCP and TLS.

The data which is obfuscated is protected via "ad hoc" constructions which use the MD5 algorithm, which has been proven to be insecure.

In order to address these privacy and security issues, the "RADIUS Extensions" working group[2] of the Internet Engineering Task Force (IETF) specified TLS transport for RADIUS, as RADIUS/TLS in RFC 6614.

The main focus of RADIUS/TLS is to provide a means to secure the communication between RADIUS peers on the transport layer.

The most important use of RADIUS/TLS lies in roaming environments where RADIUS packets need to be transferred through different administrative domains and untrusted, potentially hostile networks.