Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-13 Thread Alan DeKok
Zheng, Jiajia wrote: But as I mentioned that the same CA works fine with EAP-TTLS. Why it goes wrong with EAP-TLS? EAP-TLS requires that the CA be authorized to sign client certificates. See the certificate creation scripts in 2.1.8, they may have fixes for this. Alan DeKok. - List

RE: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-13 Thread Zheng, Jiajia
Alan DeKok wrote: Zheng, Jiajia wrote: But as I mentioned that the same CA works fine with EAP-TTLS. Why it goes wrong with EAP-TLS? EAP-TLS requires that the CA be authorized to sign client certificates. See the certificate creation scripts in 2.1.8, they may have fixes for this.

RE: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Zheng, Jiajia
Sorry, I forgot the subject. Zheng, Jiajia wrote: Hi, I hope it is the right place to ask questions about EAP-TLS with radius server. I installed freeradius-2.1.6 rpm package on my Fedora 10 system. EAP_PEAP, EAP_TTLS_CHAP, TTLS_MD5, TTLS_MSCHAP, etc. work fine. However, EAP-TLS handshake

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Alan DeKok
Zheng, Jiajia wrote: 11. EAP-TLS failed, see the attached tls.log for the output of radiusd Could you help me out on this issue? Paste the debug output into the self-help form at: http://networkradius.com/freeradius.html Look for red text. Is there anything I did wrong? Let me know if

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread sunhualing
检查一下时间系统,要求在证书的有效期内 CA的事情有点难说,你再检查下配置 On Thu, May 13, 2010 at 10:53 AM, Zheng, Jiajia jiajia.zh...@intel.comwrote: Alan DeKok wrote: Zheng, Jiajia wrote: 11. EAP-TLS failed, see the attached tls.log for the output of radiusd Could you help me out on this issue? Paste the debug