Configuring ssl-admin to include windows OIDs in the server cert

Alan DeKok aland at deployingradius.com
Mon Nov 17 03:32:56 CET 2014


Jasvinder S. Bahra wrote:
> Android devices connect to the network without any problems, but windows
> devices connections requests never even get passed to the freeradius
> daemon. After looking around on the internet as well as asking some
> questions on this list, I understand I have to embed the XP Extensions
> OIDs into the server certificate (something I have to do when actually
> creating the server certificate).

  Yes, Windows requires that.

> I've found information on how to do this using the openssl command,

  i.e. the scripts and examples that come with the server?  In
raddb/certs?  With a README file?

> but
> as i'm using the ssl-admin tool to handle certificate creation, I need
> to make it do the same.
> 
> Has anyone had any experience in doing this?

  Ask the ssl-admin people how their tool works.

  The scripts that ship with th eserver *work*.  I suggest using them.

  Alan DeKok.


More information about the Freeradius-Users mailing list