Advanced usage of Radsec and PKI integration?

Yoann Gini yoann.gini at gmail.com
Fri Apr 18 11:56:36 UTC 2025


Hello,

I’m looking at the following Radsec documentation for FreeRadius and I’m lacking some details, maybe someone here can share some guidance?

https://www.freeradius.org/documentation/freeradius-server/3.2.8/howto/protocols/proxy/enable_radsec.htmlhttps://www.freeradius.org/documentation/freeradius-server/3.2.8/howto/protocols/proxy/enable_radsec.html

My goal here is to simplify the use of FreeRadius by solely relying on Certificate Based Authentication for the client, and so, finding a way to configure FreeRadius to accept all client, regardless of their IP, if they can authenticate with a certificate coming from a specific PKI and that is currently not revoked in the PKI’s CRL.

My goal here is to easily provide Cloud Radius for remote network who might by on non static IP address or behind CG-NAT.

Best regards
Yoann


More information about the Freeradius-Users mailing list