>I only re-generated the 'client' certificate but in doing a diff, it >appears that every level of cert generation has changed...do I have to >start over? >
You should. Original Makefile was creating ca certificate that was valid only for 30 days. This one will use value from ca.cnf. >Windows is still complaining with new client certificate and yes, system >is XP Service Pack 3 so it's pretty much up-to-date > Then you haven't got the (correct) ca.der certificate in your trusted root certificate store. Ivan Kalik Kalik informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html