[ttls] <<< Unknown TLS version [length 0002]

Alan DeKok aland at deployingradius.com
Wed May 20 18:35:58 CEST 2015


On May 20, 2015, at 12:09 PM, gabriel_skupien <gabriel_skupien at o2.pl> wrote:
> StrongsWAN xauth-eap with eap-ttls and eap-radius plugins. https://wiki.strongswan.org/projects/strongswan/wiki/XAuthEAP

  That should work.

> I am not sure about that but Strongswan eap-ttls seems to be rather mature.

  I agree.

> b) FreeRADIUS and/or OpenSSL weren't built with the required features>     e.g. an old OpenSSL library won't do TLS 1.2, because the code was>     written before the standard was finalized.> > 
> 
> Not possible.

  This isn't magic.  There's a version mismatch.  If it's not on the FreeRADIUS side, it's on the Strongswan side.

  Alan DeKok.




More information about the Freeradius-Users mailing list