Andreas Wolf <[EMAIL PROTECTED]> wrote:
> In older versions of freeRadius (before 1.0.0) when using TLS, TTLS or 
> PEAP the supplicant used to receive the entire certificate chain. In my 
> simple setup that was the server cert and the root cert.
> Now, I am running 1.0.2 and the server only ever sends the server cert, 
> never the root cert anymore.

  Hmm...

> Was this a conscious decision? What was the rationale for that? Can it 
> be configured to do either?

  I don't see any differences in the code in the EAP-TLS module,
between 1.0.1 and 1.0.2.  I don't know how to explain the difference
in behavior.

  There is a minor difference between 1.0.0 and 1.0.1, but it
shouldn't affect that.

  Alan DeKok.

- 
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to