question about windows users
Bartosz Chodzinski
bartosz.c at gmail.com
Fri May 15 15:48:25 CEST 2009
Thanks,
I created certificate
openssl req -new -keyout /etc/freeradius/eap/client_key.pem -out
/etc/freeradius/eap/client_req.pem -days 730 -passin pass:password -passout
pass:password
openssl ca -config /etc/ssl/openssl.cnf -policy policy_anything -out
/etc/freeradius/eap/client_cert.pem -passin pass:password -key password
-extensions xpclient_ext -extfile /etc/freeradius/eap/xpextensions -infiles
/etc/freeradius/eap/client_req.pem
And I put cliet_cert.pem to both certificate stores Trusted CA and Personal
Are you sure that I should not change anything in my server config files
Anyway it is still not working :(.
Bartosz
On Fri, May 15, 2009 at 2:38 PM, Ivan Kalik <tnt at kalik.net> wrote:
> > tls {
> > private_key_file = /etc/freeradius/eap/newkey.pem
> > certificate_file = /etc/freeradius/eap/newcert.pem
> > CA_file = /etc/freeradius/eap/eapCA/cacert.pem
> > dh_file = /etc/freeradius/eap/dh
> > random_file = /etc/freeradius/eap/random
> > fragment_size = 1024
> > include_length = yes
> > check_crl = no
> > }
> >
> > I tryied both:
> > newcert.pem and/or cacert.pem
> > but still no communicate on debug screen:
>
> Neither of them are client certificates.
>
> newcert - server certificate
> cacert - ca certificate
>
> Ivan Kalik
> Kalik Informatika ISP
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20090515/94f703e7/attachment.html>
More information about the Freeradius-Users
mailing list