Authenticator -to- RADIUS connection

Turner, Randy Randy.Turner at
Tue Oct 5 15:51:37 CEST 2021

I wasn’t playing peek-a-boo and I didn’t use the phrase “like TLS’, my first question was pretty straightforward.   We were just trying to understand if we could use something other than a username/password for the authenticator to authenticate to RADIUS.

From: Freeradius-Users < at> on behalf of Alan DeKok <aland at>
Date: Tuesday, October 5, 2021 at 9:41 AM
To: FreeRadius users mailing list <freeradius-users at>
Subject: Re: Authenticator -to- RADIUS connection
On Oct 5, 2021, at 9:36 AM, Turner, Randy <Randy.Turner at> wrote:
> I guess I was thinking about using mutual TLS for the authenticator to authenticate itself to the FreeRADIUS server…rather than a username and password..

  If you look at the examples and documentation, there's EAP-TLS.

  If the authenticator doesn't support EAP, then it's impossible.

  And PLEASE ask good questions.  It's frustrating to get told on the THIRD MESSAGE "Oh, something like TLS".  Playing "peek a boo" with information is not productive.

  Alan DeKok.

List info/subscribe/unsubscribe? See

More information about the Freeradius-Users mailing list