eap ttls certificate config

Jehan PROCACCIA Jehan.Procaccia at it-sudparis.eu
Tue Sep 30 14:16:10 CEST 2008


tnt at kalik.net a écrit :
>> pki-chain.pem contain the concatenation of our 3 level pki hierarchy
>> ( cat itClass1.crt > pki-chain.pem ; cat itClass2.crt >> pki-chain.pem ;
>> cat itClass3.crt >> pki-chain.pem )
>>     
>
> Did you find somewhere in openssl documentation that you can mix .pem and
> crt formats like that?
>
> Ivan Kalik
> Kalik Informatika ISP
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
>   
well ... my .crt files are in PEM format (not ASN1/DER ).
I should rename them to .pem ... but after the concatenations, finally 
the  pki-chain.pem contains 3 instances of BEGIN -- END certificate
isn't it correct ?
what about that CA_path directive ? why is it generating a segmentation 
fault when starting radiusd ?
thanks.



More information about the Freeradius-Users mailing list