09-20-2017 10:38 PM
Establishing GRID between two device Grid Master and Grid Member happens in two phase
Phase 1 : key exchange (udp 2114)
Phase 2 : VPN tunnel (udp 1194)
In first phase Grid Master authenticate member using CRAM.
Is it CRAM mechanism use 'grid name' and 'shared secret' to do authentication?
09-22-2017 06:01 AM
You are correct about Phase 1 & Phase 2.
Grid Joining does verify/validate the 'grid name' that you enter.
However, I am not a 100% certain that it uses 'grid name' to do authentication.
Based on what I read, it uses 'challenge_string' and 'shared_secret', where challenge string = current local time + 10 random bytes encoded as Base64.