Hi, I m trying to explore EAP authentication support provided in Microsoft RADIUS server. I need to know how does it work, mainly how certificates are verified. Is it only the server that checks the user certificate against CRL ( revocation list) or the client side also tries to verify the server certificate. I m also exploring L2TP/IPSec with EAP and here also I m not sure how client verifies the server certificate against CRL automatically. Because a checkmark exist in dial up configuration where in we can specify "Verify Server certificate". Does it mean that it only verifies validity period of the server certificate or also check it aginst CRL by retrieving the CRL from the location specified in the server certificate. How does the whole process works... any pointers are welcome
TIA rgds Madhur _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] For Account Management (unsubscribe, get/change password, etc) Please go to: http://lists.gnac.net/mailman/listinfo/firewalls
