[EAP-TLS Windows 7] Problem with chain certificate on the client side

Phil Mayers p.mayers at imperial.ac.uk
Wed Apr 25 13:19:10 CEST 2012


On 25/04/12 10:39, jinx_20 wrote:

> Is there any way to configure FreeRadius server to explicitly accept
> intermediate CAs received from the client supplicant?

No, it should not be needed and should work; but there might be a logic 
error in the various SSL verify options or callbacks; OpenSSL is hugely 
tedious in this regard.

Can you supply the CA chain and one client cert (no key required)?

Which version of FreeRADIUS and OpenSSL?


More information about the Freeradius-Users mailing list