Hi Artur, > hi > > >> Thx for your help Artur, but I forgot to say my authenticator is a Cisco >> switch 3550, then not a wireless access-point. There's something I don't >> understand, with PEAP or EAP-MD5, the windows 2000 supplicant answer to >> identity request send by the switch but with EAP-TLS, it stay sleeping >> without doing anything... Maybe someone can confirm me that there's no >> bug >> beetween windows 2000 and EAP-TLS. >> Thx again. > > that would be quite strange, except of course you did not have the > client certificates installed at the right place etc. verify that they > are in the right repository.
I think, they are well installed, like it's explained in most HOWTOs, but.. > > windows can't ask you anything if you don't have any user certificate. What do you want to say is that win2K is going to take EAP-Identity value in client certificate, before EAP-TLS challenge start ?? I don't think so, it doesn't work like that with Xsupplicant/FreeRADIUS and it's not describe like this in RFC. > > ciao > artur Thx for your help. Fred - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html