Freeradius integration with EJBCA

Michael Ströder michael at stroeder.com
Thu Aug 18 14:43:51 CEST 2016


Arran Cudbard-Bell wrote:
> 
>> On 18 Aug 2016, at 09:37, Alan DeKok <aland at deployingradius.com> wrote:
>>
>> On Aug 18, 2016, at 1:39 AM, Jitendra <jkilambi at gmail.com> wrote:
>>>
>>> Sorry. I should've mentioned i have had free-radius configured and working
>>> with it creating the CA/crl and client certs. With EJBCA, the certs seem to
>>> be all created in the sql db vs actual cert file locations. Im confused as
>>> to how to integrate freeradius to use ejbca certs and crl.
>>
>>  You pull the certificates out of SQL, and put them into a file.
> 
> Or query SQL in the virtual server you configure for EAP-TLS validation.

Well, SQL schema could change in a newer EJBCA release.

EJBCA provides some mechs for using custom "publishers" to push all sorts of
cert and CRLs "somewhere". Hence this is rather an EJBCA question on how to use
publishers.

Ciao, Michael.

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4245 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20160818/a1b67dfd/attachment-0001.bin>


More information about the Freeradius-Users mailing list