TLS failure reason as attribute

Anirudh Malhotra 8zero2ops at gmail.com
Tue Oct 4 10:17:03 CEST 2016


Hi,

Is there a way to get the TLS failure reason(expired,revoked, invalid like
one in the log below) in one of the attributes to be used in linelog? or do
I have to check everything manually(unlang) using TLS attributes.

Tue Oct  4 12:24:26 2016 : ERROR: (9) eap_tls:   ERROR: SSL says error 10 :
certificate has expired
Tue Oct  4 12:24:26 2016 : ERROR: (9) eap_tls: ERROR: TLS Alert
write:fatal:certificate expired
Tue Oct  4 12:24:26 2016 : Error: tls: TLS_accept: Error in SSLv3 read
client certificate B
Tue Oct  4 12:24:26 2016 : Auth: (9) Login incorrect (eap_tls: SSL says
error 10 : certificate has expired): [abi]
BR,
Anirudh Malhotra
Mail: 8zero2.in at gmail.com
Facebook: www.facebook.com/8zero2
Twitter: @8zero2_in
Blog: blog.8zero2.in


More information about the Freeradius-Users mailing list