> as Alan Dekok said...deploy a new CA in advanced
> and then sign server with that new CA and put cert into place.  

I read Alan's reply and it's logical (as usual ;-) ).  

Perhaps it wasn't stated because it was intuitively obvious, but the only thing 
I would add is that when the new CA cert is deployed to the clients, their 
wireless config should also be changed to accept both the new and old CA.  This 
way, when you eventually switch FR to the cert signed by the new CA, it will be 
accepted.

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to