eaptls certificate question

Jorgen Rosink jrosink at gmail.com
Mon Feb 13 23:54:46 CET 2006


On 2/13/06, Norbert Wegener <nw at sbs.de> wrote:
> >  Alan DeKok wrote:
> >  1.0.x doesn't support certificate chains.  1.1.0 does.
> >
> >
> hm:
> Script started on Mon Feb 13 19:34:45 2006
>
> lnxad:/etc # radiusd -v
> radiusd: FreeRADIUS Version 1.1.0, for host , built on Feb 13 2006 at 19:31:10

Did have the same issue like you last week, Alan pointed me to the
required extensions needed in the certificates to use with FreeRadius.

[ xpclient_ext]
extendedKeyUsage = 1.3.6.1.5.5.7.3.2
[ xpserver_ext ]
extendedKeyUsage = 1.3.6.1.5.5.7.3.1

In my case these extensions where missing in the certificate I got,
did you check yours ?




More information about the Freeradius-Users mailing list