RE: TLS authentication works, but does not check usernames against 'users' file.

2010-11-30 Thread John McDonnell
-Original Message- On Behalf Of Andrew Bovill Hi, I'm trying to get WPA Enterprise EAP/TLS working with my wireless router. It appears that the TLS portion of the authentication works (valid certificates give me a working connection) but it does NOT appear to actually be

Re: TLS authentication works, but does not check usernames against 'users' file.

2010-11-30 Thread Andrew Bovill
On 11/30/2010 11:05 AM, John McDonnell wrote: -Original Message- On Behalf Of Andrew Bovill Hi, I'm trying to get WPA Enterprise EAP/TLS working with my wireless router. It appears that the TLS portion of the authentication works (valid certificates give me a working connection)

Re: TLS authentication works, but does not check usernames against 'users' file.

2010-11-30 Thread Phil Mayers
On 30/11/10 16:10, Andrew Bovill wrote: It just seems weird that nearly ALL of the suplicants I've used *require* me to give a username/password (or at least an Identifier + password) in addition to the unlocked certificate. Maybe a better question is: What's the point of the username/pass

Re: TLS authentication works, but does not check usernames against 'users' file.

2010-11-30 Thread Andrew Bovill
On 11/30/2010 11:15 AM, Phil Mayers wrote: On 30/11/10 16:10, Andrew Bovill wrote: It just seems weird that nearly ALL of the suplicants I've used *require* me to give a username/password (or at least an Identifier + password) in addition to the unlocked certificate. Maybe a better question

Re: TLS authentication works, but does not check usernames against 'users' file.

2010-11-30 Thread Phil Mayers
On 30/11/10 16:55, Andrew Bovill wrote: It seemed to me that it wouldn't connect if I left the Identity blank, so that may be what was confusing me. Most supplicants will use the cn=XXX from the cert as the identity, but it really makes sense to ask, because they may not be (often are not)