Hi!

As far as I can see the Server does not send the full certificates, but only
announces the certificates the server knows. I did not read the RFC yet, but
I assume that this only informs the client which certificates can be
requested to verify the server certificate chain.

Am 04.01.2012 15:09, schrieb Alan DeKok:
>> Is it possible to change the behaviour that only the certs in the
>> certificate_file are used?
> 
>   Use CA_path instead of CA_file.  That might help.

It does indeed help. Thanks!

-- 
Regards
Daniel Finger

Attachment: smime.p7s
Description: S/MIME Kryptografische Unterschrift

-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to