You don't have the right CA certificate installed on the SM. Check the certificates listed under the Security tab in the SM and make sure that YOUR CA cert is shown in one of the two available slots.
You might also be running into an issue with the issue date on the certificate if the AP doesn't have the proper time. (I don't recall what error gets spit out in that case.) If the AP doesn't have NTP or the proper time set it reverts to starting from 1/1/2001 so your certificate may not have a valid issue date if it was recently created. Ben On Tue, Mar 29, 2011 at 9:17 AM, Jim Rice <[email protected]> wrote: > Those intructions worked fine for a PC. > > But this time I am trying to test a Canopy AP and an SM. > It seems to be stopping after the server hello. > It is possible that the AP does not like the server certificate > (or its encryption method), but I don't think MS MIBs will help ;-) > > Looks like the wiki is still down... > > > --- On Mon, 3/28/11, Alan DeKok <[email protected]> wrote: > >> From: Alan DeKok <[email protected]> >> Subject: Re: Certificate Compatibility >> To: "FreeRadius users mailing list" <[email protected]> >> Date: Monday, March 28, 2011, 10:46 PM >> Jim Rice wrote: >> > Getting this: (FR 2.1.10)... >> > >> > WARNING: >> !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! >> > WARNING: !! EAP session for state 0x2f1a7f7f2b1c6afb >> did not finish! >> > WARNING: !! Please read >> > http://wiki.freeradius.org/Certificate_Compatibility >> > WARNING: >> !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! >> >> It means that the PC didn't like the server >> certificate. >> >> Follow the instructions on http://deployingradius.com/ for configuring >> EAP. It's a bit long, but it's *guaranteed* to work. >> >> > Unfortunately the wiki is down... >> >> Hmm... I hadn't seen that. I'll take a look. >> >> Alan DeKok. >> - >> List info/subscribe/unsubscribe? See >> http://www.freeradius.org/list/users.html >> > > - > List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html > - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

