OCSP parsing in client certificate

Alan DeKok aland at deployingradius.com
Fri Apr 19 19:31:24 CEST 2013


Beltramini Francesco wrote:
> Ok I see what you mean. 
> However, in my first mail I've also specified that: 
> 
> openssl x509 -in beltraminif.cer -noout -ocspid -ocsp_uri 
> returns 
> http://crl.ema.europa.eu/ocsp (which is the correct url) 
> 
> Do you know what kind of parsing is radius asking to openssl ? 

  The normal OpenSSL certificate parsing.

  We didn't implement OpenSSL, and we don't know a lot about it.  If
OpenSSL says there's no OCSP information in the certs, it's an OpenSSL
issue.

  Alan DeKok.


More information about the Freeradius-Users mailing list