WWF wrote:
> But no log is recorded if the certificates is wrong (which is possible
> in real scenarios).

  It should log that authentication has failed.

> I have noticed that if the certificates is wrong, the "radiusd  -Xxxxx"
> will output things like that:
> 
> Fri Jul 16 17:23:30 2010 : Info: [eap] EAP NAK
> Fri Jul 16 17:23:30 2010 : Info: [eap] EAP-NAK asked for EAP-Type/ttls
> Fri Jul 16 17:23:30 2010 : Info: [eap] processing type  askedtls

  That message has nothing to do with a wrong certificate.

  Alan DeKok.
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html

Reply via email to