EAP-TTLS PEAP MCHAPv2
Eshun Benjamin
bkeshun at yahoo.fr
Wed May 2 10:41:23 CEST 2007
I have appended the intermediate cert to the server cert but I got the same result.
----- Message d'origine ----
De : "Reimer Karlsen-Masur, DFN-CERT" <karlsen-masur at dfn-cert.de>
À : FreeRadius users mailing list <freeradius-users at lists.freeradius.org>
Envoyé le : Mercredi, 2 Mai 2007, 9h40mn 59s
Objet : Re: EAP-TTLS PEAP MCHAPv2
Hey.
Append all intermediate CA certificates onto the end of the file specified
with the "certificate_file" option in the eap.conf files eap->tls section.
This file usually hold your RADIUS server certificate and can additionally
hold the chain certificates as well.
Eshun Benjamin wrote:
>
> I am using an enterprise certificate which has intermediate CA. The root
> CA is well known (verisign) and already on the MAC keychain access(3.3)
> by default. MAC recognises the certificate and its validity but
> complains of "The server certificate is not trusted because there
> are no explicit trust settings". If I click continue or always trust it
> works fine but I want to get rid of this prompt without clicking
> continue or always trust to give it smooth and uninteractive log on.
--
Kind Regards
Reimer Karlsen-Masur
DFN-PKI FAQ: https://www.pki.dfn.de/faqpki
--
Dipl.-Inform. Reimer Karlsen-Masur (PKI Team), Phone +49 40 808077-615
DFN-CERT Services GmbH, https://www.dfn-cert.de, Phone +49 40 808077-555
Sitz / Register: Hamburg, AG Hamburg, HRB 88805, Ust-IdNr.: DE 232129737
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
___________________________________________________________________________
Découvrez une nouvelle façon d'obtenir des réponses à toutes vos questions !
Profitez des connaissances, des opinions et des expériences des internautes sur Yahoo! Questions/Réponses
http://fr.answers.yahoo.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20070502/775af947/attachment.html>
More information about the Freeradius-Users
mailing list