Re: extendedKeyUsage = 1.3.6.1.5.5.7.3.1

2004-11-22 Thread Rok Papez
Have you checked the certificate for errors ? I've been using this EKU without problems with freeradius. AFAIK freeradius is not processing the certificates, but the openssl code is. In openssl.cnf you need: # [ eku ] extendedKeyUsage = 1.3.6.1.5.5.7.3.1 And when you sign a certificate request (I

extendedKeyUsage = 1.3.6.1.5.5.7.3.1

2004-11-19 Thread Bilal Shahid
Hi, I am using FreeRADIUS to authenticate the XSupplicant using EAP-TLS. The certificates are being generated using the script CA.all. For the Server certificate, the TLS Web Server OID used is 1.3.6.1.5.5.7.3.1. Now what the FreeRADIUS Server is actually sending out to the Client

Re: extendedKeyUsage = 1.3.6.1.5.5.7.3.1

2004-11-19 Thread Alan DeKok
Bilal Shahid [EMAIL PROTECTED] wrote: Now I might be totally off the track here in this analysis but I just wanted to make sure that the Server is indeed sending out what it is supposed to send out to the Client. Is it alright that the OID being sent to the Client has its first 2 bytes