TLS Alert read:fatal:internal error

Alan DeKok aland at
Sun May 30 15:33:44 CEST 2021

On May 30, 2021, at 7:21 AM, Piotr Rudzki <ryba.lodz at> wrote:
> I've managed to resolve problem. Client device to verify certificate needs
> domain listed in the server's certificate CN or SAN, but I've got only
> server's FQDN in CN and IP in SAN. When I pass FQDN as domain it work's as
> expected.

  Ah, OK.

  I suspect that the "internal" error is that you're running an older version of FreeRADIUS, which doesn't understand all of the newer OpenSSL errors.

  It should be better with 3.0.22.

  Alan DeKok.

More information about the Freeradius-Users mailing list