question about windows users

Bartosz Chodzinski bartosz.c at gmail.com
Fri May 15 15:48:25 CEST 2009


Thanks,

I created certificate

openssl  req -new -keyout /etc/freeradius/eap/client_key.pem -out
/etc/freeradius/eap/client_req.pem -days 730 -passin pass:password -passout
pass:password

openssl ca -config /etc/ssl/openssl.cnf -policy policy_anything -out
/etc/freeradius/eap/client_cert.pem  -passin pass:password -key password
-extensions xpclient_ext -extfile /etc/freeradius/eap/xpextensions -infiles
/etc/freeradius/eap/client_req.pem

And I put cliet_cert.pem to both certificate stores Trusted CA and Personal

Are you sure that I should not change anything in my server config files

Anyway it is still not working :(.

Bartosz

On Fri, May 15, 2009 at 2:38 PM, Ivan Kalik <tnt at kalik.net> wrote:

> > tls {
> >       private_key_file = /etc/freeradius/eap/newkey.pem
> >       certificate_file = /etc/freeradius/eap/newcert.pem
> >       CA_file = /etc/freeradius/eap/eapCA/cacert.pem
> >       dh_file = /etc/freeradius/eap/dh
> >       random_file = /etc/freeradius/eap/random
> >       fragment_size = 1024
> >       include_length = yes
> >       check_crl = no
> >    }
> >
> > I tryied both:
> > newcert.pem and/or cacert.pem
> > but still no communicate on debug screen:
>
> Neither of them are client certificates.
>
> newcert - server certificate
> cacert - ca certificate
>
> Ivan Kalik
> Kalik Informatika ISP
>
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20090515/94f703e7/attachment.html>


More information about the Freeradius-Users mailing list