> > Is 2.0.0-pre2 reliable for production usage?
>
> You *can* use the certificates it creates in 1.1.7.
>
> Alan DeKok.
> -
> List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
>
Well, finally I fixed the problem, issuing "real" certificates and
importing cacert.pem in Windows.
I used ttls. By other hand, I used
DEFAULT Ldap-UserDN := `uid=%{User-Name},ou=people,dc=company,dc=com`
in users file because I need to use LDAP and RADIUS *only* for
authentication and authorization for a wireless network.
I try to generate the new certificates by CA.all but i've this :
openssl pkcs12 -export -in demoCA/cacert.pem -inkey newreq.pem -out root.p12
-cacerts -passin pass:whatever -passout pass:whatever
Error opening input file demoCA/cacert.pem
demoCA/cacert.pem: No such file or directory
+ openssl pkcs12 -in root.p12 -out root.pem -passin pass:whatever -passout
pass:whatever
Error opening input file root.p12
root.p12: No such file or directory
+ openssl x509 -inform PEM -outform DER -in root.pem -out root.der
Error opening Certificate root.pem
24709:error:02001002:system library:fopen:No such file or
directory:bss_file.c:352:fopen('root.pem','r')
24709:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:354:
unable to load certificate
my goal is to put EAP-TTLS by windows XP and Linux clients, but i've many
problem with certificates i don't know i resolve this problem??
could you help me please!
Thanks everybody for your support!
--
--
Sergio Belkin -
-
thanks
List info/subscribe/unsubscribe? See
http://www.freeradius.org/list/users.html
_________________________________________________________________
Personnalisez votre Messenger avec Live.com
http://www.windowslive.fr/livecom/
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html