Hi, > The information given by Prateek has helped me sort out the pem file issue, > but I'm still getting rejected clients with the certificate compatibility > warning. Should I be using .key files, or .pem for the ca?
for the CA - we use CRT files - which are x509 format files the client needs to have the cA in its certificate store....so for Windows you need to ensure that it has been put into the correct part of the certificate store (use the certmgr tool) alan - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

