Re: Certificate Revocation List (EAP/TLS)

2005-05-19 Thread freeradius
it doesen't work with this options. without check_crl = yes it works fine. the tls section looks like that: tls { private_key_password = ** private_key_file = ${raddbdir}/certs/[EMAIL PROTECTED]

Re: Certificate Revocation List (EAP/TLS)

2005-05-18 Thread freeradius
Have no one a solution of this problem? thanks for help Alain Hi, I work with freeradius 1.0.2 If I configure in the TLS section of eap.conf (without this entries the autentification process works fine) CA_path = /path check_crl = yes crl_dir = /path crl = file Not any

Re: Certificate Revocation List (EAP/TLS)

2005-05-18 Thread Michael Griego
There are no crl_dir and crl configuration options recognized by the server. You must have added those. The correct way to do this is to add the PEM encoded CRL to the end of your PEM encoded CA certificate, referenced by the CA_file configuation option, then set check_crl = yes. --Mike

Re: Certificate Revocation List (EAP/TLS)

2005-05-18 Thread Michael Griego
Luis Daniel Lucio Quiroz wrote: May do this with just a cat cacert.pem crl.pem ca.pem comand? Yes. Then set CA_file = ca.pem --Mike --- Michael Griego Wireless LAN Project Manager The University of Texas at Dallas - List info/subscribe/unsubscribe? See

Certificate Revocation List (EAP/TLS)

2005-05-03 Thread freeradius
Hi, I work with freeradius 1.0.2 If I configure in the TLS section of eap.conf (without this entries the autentification process works fine) CA_path = /path check_crl = yes crl_dir = /path crl = file Not any certificate is accepted (I generate the certificates and the crl with tinyca). How