DER format in TLS certificates

Sergio Belkin sebelk at gmail.com
Fri May 2 20:33:07 CEST 2008


Hi,

Can I use DER format for certificates?

With PEM format TTLS works fine but if I use DER format it outputs:

 Module: Instantiating eap-tls
   tls {
        rsa_key_exchange = no
        dh_key_exchange = yes
        rsa_key_length = 512
        dh_key_length = 512
        verify_depth = 0
        pem_file_type = yes
        private_key_file = "/etc/pki/tls/certs/ips-spectrum-key.der"
        certificate_file = "/etc/pki/tls/certs/ips-spectrum-crt.der"
        CA_file = "/etc/pki/tls/certs/ips-ca-bundle.der"
        dh_file = "/usr/local-2.0.2/etc/raddb/certs/dh"
        random_file = "/usr/local-2.0.2/etc/raddb/certs/random"
        fragment_size = 1024
        include_length = yes
        check_crl = no
        cipher_list = "DEFAULT"
   }
rlm_eap: SSL error error:0906D06C:PEM routines:PEM_read_bio:no start line
rlm_eap_tls: Error reading certificate file
/etc/pki/tls/certs/ips-spectrum-crt.der
rlm_eap: Failed to initialize type tls
/usr/local-2.0.2/etc/raddb/eap.conf[17]: Instantiation failed for module "eap"
/usr/local-2.0.2/etc/raddb/sites-enabled/default[253]: Failed to find
module "eap".
/usr/local-2.0.2/etc/raddb/sites-enabled/default[200]: Errors parsing
authenticate section.
 }
}
Errors initializing modules


Thanks in advance!
-- 
--
Open Kairos http://www.openkairos.com
Watch More TV http://sebelk.blogspot.com
Sergio Belkin -



More information about the Freeradius-Users mailing list