I am looking for some config options to control the timeout behaviour.
Are there any directives in krb5.conf to control timeouts, e.g how long 
to wait if a kdc isn't reachable?

FreeRADIUS here authenticates via kerberos (krb5 libraries) against KDC. 
FreeRADIUS is configured to fall back to another authentication method 
if krb5 fails, e.g. KDC isn't reachable. The default timeouts are here 
quite long and we want to decrease the timeout the krb5 libraries waits 
for response.

Where can I position the lever?

