Joe Meslovich <[EMAIL PROTECTED]> wrote:
> What should my entry look like in the users file to get this to
> authenticate. When I tried running 1.0.1 last night I was getting an error
> about Auth-Type of EAP being an unknown Auth-Type.

  Hmm... be sure that 1.0.1 is using the dictionaries from 1.0.1, and
not the 0.9.3 dictionaries.

> We used the full domain name for the CN in the certificates. I see in the
> eap.conf for 1.0.1 that setting Auth-Type to EAP is not recommended. This
> entry in question is for a computer that is doing machine authentication.

  If you know what you're doing, and it works, setting "Auth-Type =
EAP" is OK.  In general, though, most people get it wrong.

  Alan DeKok.


- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to