Windows 10 EAP-TTLS with client certificate

Tomasz Wolniewicz twoln at umk.pl
Wed Jan 22 08:08:06 CET 2020


W dniu 22.01.2020 o 03:13, Alan DeKok pisze:
> On Jan 21, 2020, at 8:02 PM, Ján Máté <jan.mate at inf-it.com> wrote:
>> I successfully installed and configured our FreeRADIUS server with the following results:
>>
>> 	EAP-TLS	=> works on Windows 10, iOS 13, macOS 10.15 (Catalina)
>> 	EAP-TTLS + PAP (LDAP auth) => works on Windows 10, iOS 13, macOS 10.15
>> 	EAP-TTLS + PAP (LDAP auth) + client cert => NOT works on Windows 10, but works on iOS 13, macOS 10.15
>   Windows doesn't do client certificates for TTLS. :(

You can certainly configure EAP-TLS as the inner method for TTLS in the
native Windows 10 TTLS, not sure if it will actually work though.

Tomasz Wolniewicz

>
>   Alan DeKok.
>
>
> -
> List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

-- 
Tomasz Wolniewicz    
          twoln at umk.pl        http://www.home.umk.pl/~twoln

Uniwersyteckie Centrum Informatyczne   Information&Communication Technology Centre
Uniwersytet Mikolaja Kopernika     Nicolaus Copernicus University,
pl. Rapackiego 1, Torun               pl. Rapackiego 1, Torun, Poland
tel: +48-56-611-2750                            tel kom.: +48-693-032-576


-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 5085 bytes
Desc: Kryptograficzna sygnatura S/MIME
URL: <http://lists.freeradius.org/pipermail/freeradius-users/attachments/20200122/1df7417d/attachment.bin>


More information about the Freeradius-Users mailing list