Hello Grant,

Network card propriety/Wireless propriety -> Authentication tab -> Settings (next to PEP) -> uncheck the box validate server certificate.

Thanks


On 01/17/2017 06:13 AM, Grant Hathaway wrote:

Hi Fabrice,

Thanks for your continued support.

The only place I can see to disable certificate checks in Windows is in Internet Options/Advanced/security

I just want to disable the Radius certificate check, is this possible?

Thanks

Grant Hathaway
Network and Infrastructure Analyst

Certas Energy UK Limited
The Switch
1-7 The Grove - Slough - SL1 1QP
Phone : 01753756965 - Mobile : 07920075818
[email protected] <mailto:[email protected]>

*From:*Fabrice Durand [mailto:[email protected]]
*Sent:* Monday, January 16, 2017 3:33 PM
*To:* [email protected]
*Subject:* Re: [PacketFence-users] eap.conf

Hello Grant,

it's on the supplicant side.

Regards

Fabrice

Le 2017-01-16 à 04:07, Grant Hathaway a écrit :

    Thanks Fabrice, that’s very helpful.

    How do I disable the certificate check for the time being?

    Grant Hathaway
    Network and Infrastructure Analyst

    Certas Energy UK Limited
    The Switch
    1-7 The Grove - Slough - SL1 1QP
    Phone : 01753756965 - Mobile : 07920075818
    [email protected]
    <mailto:[email protected]>

    *From:*Fabrice Durand [mailto:[email protected]]
    *Sent:* Thursday, January 12, 2017 4:34 PM
    *To:* [email protected]
    <mailto:[email protected]>
    *Subject:* Re: [PacketFence-users] eap.conf

    Hello Grant,

    Le 2017-01-12 à 10:51, Grant Hathaway a écrit :

        Hi all,

        I think this is a common issue..

        I’m getting the below error in the radius log when I connect a
        windows 7 client to packetfence.

        /usr/local/pf/logs/radius.log

        There’s obviously a certificate trust issue causing the
        problem. Short term: Can I disable the certificate check for
        testing purposes?

    yes


        Long term: Is there any information or guides you can provide
        on configuring a self-signed SSL certificate in eap.conf to
        work with our Windows domain joined machines when using a
        wired connection and domain user login?

        We have an ADCS root certification authority in place,s it a
        case of raising a CSR for an apache website, I’ve done this
        once previously but my mind has gone blank.

    create and a certificate for radius from your AD PKI and install
    it on pf.
    After that configure your supplicant to verify with the AD
    certificate.

    (you can follow 3.1.7
    https://packetfence.org/doc/PacketFence_MSPKI_Quick_Install_Guide.html)

    Regards
    Fabrice



        Thanks

        Grant Hathaway
        Network and Infrastructure Analyst

        Certas Energy UK Limited
        The Switch
        1-7 The Grove - Slough - SL1 1QP
        Phone : 01753756965 - Mobile : 07920075818
        [email protected]
        <mailto:[email protected]>


          ­­



        
------------------------------------------------------------------------------

        Developer Access Program for Intel Xeon Phi Processors

        Access to Intel Xeon Phi processor-based developer platforms.

        With one year of Intel Parallel Studio XE.

        Training and support from Colfax.

        Order your platform today.http://sdm.link/xeonphi





        _______________________________________________

        PacketFence-users mailing list

        [email protected]
        <mailto:[email protected]>

        https://lists.sourceforge.net/lists/listinfo/packetfence-users




--
    Fabrice Durand

    [email protected] <mailto:[email protected]>  ::  +1.514.447.4918 (x135) 
::www.inverse.ca <http://www.inverse.ca>

    Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org)


      ­­


    
------------------------------------------------------------------------------

    Developer Access Program for Intel Xeon Phi Processors

    Access to Intel Xeon Phi processor-based developer platforms.

    With one year of Intel Parallel Studio XE.

    Training and support from Colfax.

    Order your platform today.http://sdm.link/xeonphi




    _______________________________________________

    PacketFence-users mailing list

    [email protected]
    <mailto:[email protected]>

    https://lists.sourceforge.net/lists/listinfo/packetfence-users



--
Fabrice Durand
[email protected] <mailto:[email protected]>  ::  +1.514.447.4918 (x135) 
::www.inverse.ca <http://www.inverse.ca>
Inverse inc. :: Leaders behind SOGo (http://www.sogo.nu) and PacketFence 
(http://packetfence.org)

  ­­


------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot


_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

--
Antoine Amacher
[email protected]  ::  www.inverse.ca
+1.514.447.4918 x130  :: +1 (866) 353-6153 x130
Inverse inc. :: Leaders behind SOGo (www.sogo.nu) and PacketFence 
(www.packetfence.org)

------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, SlashDot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to