Fabrice,

Totally understand being busy. Thanks for the reply. I was actually able to
get this working a few hours ago, and hadn't had time to post a reply. I'm
not sure what did it, perhaps adding "strip" to the realm options because
the radius stripped name for hosts is host/<FQDN> - this likely
accomplishes the same thing that you suggested but in a different manner.
To be completely clear I couldn't find a normalize option but I did see:
"RADIUS machine auth with username - Use the RADIUS username instead of the
TLS certificate common name when doing machine authentication." Just to
verify, this is the option you are suggesting, correct?

One other thing I noticed in the authentication  request is the REALM is
coming up as "NULL." Is this normal for RADIUS authenticated EAP-TLS?

Much of the info I was reading from the listserv also had included adding
source or sources to the realm, this is not available in the GUI, is this a
.conf feature only or a feature of PF 6.x that was deprecated?

Thanks,
-Jason
------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
PacketFence-users mailing list
PacketFence-users@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to