[EMAIL PROTECTED] wrote:
> Content-Type: text/plain;
>       charset="Windows-1252"
> Content-Transfer-Encoding: base64

  This is TOTALLY wrong.  Please fix your mailer to send plain text
when the message is plain text.

> Yes I believe you are correct. Much code of EAP-TLS can be used by
> TTLS or PEAP. I think the major difference between EAP-TTLS and
> EAP-TLS is the second phase (i.e. the "tunnel" phase).  Once the
> handshake is successful, the TTLS server should extract AVPs from
> the TLS records and append them to the RADIUS packet. Is my
> understanding correct?

  That's what the documents say.  But for FreeRADIUS, the TTLS server
IS the RADIUS server.

  So in FreeRADIUS, what I said before is the best way to go.  Have
the TLS, TTLS, and PEAP modules share TLS code, and that TLS code
creates a data structure containing application-layer data that the
TTLS, and PEAP modules interpret.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to