Some performance statistics for use by NREN and Trust Router operators to set expectations.
Network
There are three trust routers in the test infrastructure in a chained configuration:
- MAINTR - The main (top level) trust router to which the APC is connected, as well as one IDP (MAIN-IDP) and one RP (MAIN-RP).
- DSTR - The first level down-stream trust router, to which one IDP (DS-IDP) and one RP (DS-RP) are connected.
- DS-TR2 - The second level down-stream trust router, which is connected to DSTR, and to which one IDP (DS-IDP2) and one RP (DS-RP2) are connected.
Methodology
Each of these timings has been obtained by restarting all TID and RADIUS servers for all services to ensure that new keys are obtained for all parties in the chain. This way a maximum time in an ideal configuration can be obtained. Additionally, the timings were obtained in both directions up- as well as down-stream, as well as between services on the same trust router.
Timings