Config: Windows XP Pro SP1 (Supplicant) Linksys WAP54G v2.06 WPA (Radius)/AES (Authenticator) Solaris 8 w/ OpenSSL 0.9.7d w/ Freeradius snapshot 20040328 (Authentication server)
I have EAP-TLS working fine, and client CRL also works! Woo-hoo! I then tried EAP-PEAP, and that also works. Yes! It seems that EAP-PEAP doesn't require a client-side certificate. Does that mean I can't use multi-factor authentication? I would like to force all clients to have both a valid client certificate, and supply a password. I know you can click the check off when you import the client certificate that the user has to supply the password for the private key, but I can't assume end-users will check it off when they import the certificate. Any help would be greatly appreciated! -Dan __________________________________ Do you Yahoo!? Yahoo! Finance Tax Center - File online. File on time. http://taxes.yahoo.com/filing.html - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

