"WARNING: !! EAP session for state ... did not finish!", And Other Warnings

Nick Lowe nick.lowe at gmail.com
Sat Oct 3 18:03:55 CEST 2015


There's a good link here too:

https://wiki.geant.org/display/H2eduroam/EAP+Server+Certificate+considerations

On Sat, Oct 3, 2015 at 4:31 AM, Jim Seymour <jseymour at linxnet.com> wrote:

> On Fri, 2 Oct 2015 21:38:58 -0400
> Alan DeKok <aland at deployingradius.com> wrote:
>
> [snip]
> >
> >   And... how did you create the self-signed certs?
>
> By editing /etc/ssl/openssl.cnf and running CA.pl.  That's all I've
> *ever* done.  (Well, CA.sh, before.  But similar results.)
>
> >
> [snip]
> >
> >   I have *zero* clue how people find random third-party web sites
> > from nearly a decade ago, and cannot find the documentation that
> > ships with the server.
>
> Probably because...
>
> >
> >   The method to create certs is documented in raddb/certs/ .  It's
> > been there since before that crappy page was written.
>
> *sigh*  Except Debian, Ubuntu or whomever decided it would be a Good
> Idea to move it.
>
> The locate command I ran, earlier, to find xpextensions?
>
>     $ ls -1 /usr/share/doc/freeradius/examples/certs
>     bootstrap
>     ca.cnf
>     client.cnf
>     Makefile
>     README
>     server.cnf
>     xpextensions
>
> >
> > PLEASE read the documentation that we've written.  Pretty much
> > everything else is old, broken, crappy, and lying to you.
>
> Now that I found it: I just did.
>
> I really wish people wouldn't move stuff around.
>
> Thanks for the help, Alan, and everybody else.
>
> Regards,
> Jim
> --
> Note: My mail server employs *very* aggressive anti-spam
> filtering.  If you reply to this email and your email is
> rejected, please accept my apologies and let me know via my
> web form at <http://jimsun.LinxNet.com/contact/scform.php>.
> -
> List info/subscribe/unsubscribe? See
> http://www.freeradius.org/list/users.html
>


More information about the Freeradius-Users mailing list