Additional EAP-TLS Logging Option

Alan DeKok aland at
Tue Jul 27 18:09:52 CEST 2010

Ross, Michael wrote:
> I customized a freeradius installation to include an option to log information from the client certificates (subject, issuer, serial, expiration) when doing eap-tls authentication.  This is done through a new option, log_certificates, in the tls section of the eap.conf file.  Is there any interest in adding this capability into the baseline freeradius?  I'm happy to make any changes that would be required to do that.  Below are the updated rlm_eap_tls.h and rlm_eap_tls.c.

  Patches are *very* much preferred.  It's easier to see what's changed.
 Github makes this easier.  See for more

  I'll take a look at the code.

  Alan DeKok.

More information about the Freeradius-Devel mailing list