EAP-TTLS PEAP MCHAPv2

Eshun Benjamin bkeshun at yahoo.fr
Wed May 2 10:41:23 CEST 2007


I have appended the intermediate cert to the server cert but I got the same result. 
 



----- Message d'origine ----
De : "Reimer Karlsen-Masur, DFN-CERT" <karlsen-masur at dfn-cert.de>
À : FreeRadius users mailing list <freeradius-users at lists.freeradius.org>
Envoyé le : Mercredi, 2 Mai 2007, 9h40mn 59s
Objet : Re: EAP-TTLS PEAP MCHAPv2

Hey.

Append all intermediate CA certificates onto the end of the file specified
with the "certificate_file" option in the eap.conf files eap->tls section.
This file usually hold your RADIUS server certificate and can additionally
hold the chain certificates as well.

Eshun Benjamin wrote:
> 
> I am using an enterprise certificate which has intermediate CA. The root
> CA is well known (verisign) and already on the MAC keychain access(3.3)
> by default. MAC recognises the certificate and its validity but
> complains of  "The server certificate  is  not trusted  because  there
> are no explicit trust  settings". If I click continue or always trust it
> works fine but I want to get rid of this prompt  without clicking
> continue or always trust to give it smooth and uninteractive log on.


-- 
Kind Regards

Reimer Karlsen-Masur

DFN-PKI FAQ: https://www.pki.dfn.de/faqpki
--
Dipl.-Inform. Reimer Karlsen-Masur (PKI Team), Phone +49 40 808077-615
DFN-CERT Services GmbH, https://www.dfn-cert.de, Phone +49 40 808077-555
Sitz / Register: Hamburg, AG Hamburg, HRB 88805, Ust-IdNr.: DE 232129737

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html






      
___________________________________________________________________________ 
Découvrez une nouvelle façon d'obtenir des réponses à toutes vos questions ! 
Profitez des connaissances, des opinions et des expériences des internautes sur Yahoo! Questions/Réponses 
http://fr.answers.yahoo.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20070502/775af947/attachment.html>


More information about the Freeradius-Users mailing list