If someone can gain that level of access and decides JUST to issue a wild
certificate - write him a "Thank You" letter. What if he cretes a
batch of new users? Or resets ALL your users passwords to "Leroy wuz
'ere"? Your worries are misplaced.
Ivan Kalik
Kalik Informatika ISP
-
List info/subscri
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
[EMAIL PROTECTED] wrote:
> By not issuing client certificates.
>
While I covered this solution in my initial posting, what if a
certificate was issued, no CRL possible and I want to disable EAP-TLS
but keep EAP-PEAP?
- --
== +---
By not issuing client certificates.
Ivan Kalik
Kalik Informatika ISP
Dana 1/6/2007, "Martin Gadbois" <[EMAIL PROTECTED]> piše:
>-BEGIN PGP SIGNED MESSAGE-
>Hash: SHA1
>
>When enabling EAP-PEAP with FreeRADIUS, module EAP-TLS is required.
>
>How can I disable EAP-TLS while using EAP-PEAP
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
When enabling EAP-PEAP with FreeRADIUS, module EAP-TLS is required.
How can I disable EAP-TLS while using EAP-PEAP?
I agree that if the client does not have a client key, EAP-TLS will not
work. But how to restrict EAP-TLS in any case?
Thanks!
- --
Does anyone have a Radiusd.conf they would share?
I am trying to get Rodopi's users file it creates to work with freeradius
As you knw its in a different format as
username Password = password
Anyway its a backup radius solution of site, and I don't want it to have to use
mssql
Trying to be as
This looks OK now:
State: DISCONNECTED -> ASSOCIATING
..
State: ASSOCIATING -> ASSOCIATED
..
EAP: EAP entering state INITIALIZE
..
EAPOL: SUPP_PAE entering state AUTHENTICATING
This is now a supplicant issue > EAP is failing despite Access-Accept.
Something is broken there. You will need to post
Thanks a lot, it works fine now.
Elie Hani
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On
Behalf Of Peter Nixon
Sent: Friday, June 01, 2007 10:47 AM
To: FreeRadius users mailing list
Subject: Re: Backing up freeradius
On Fri 01 Jun 2007, Peter Nixon wrote:
> On F
Yes, radius is now working fine. What are you using (? going to use) to
assign an IP address to the client - radius or DHCP? If you are using
DHCP something is wrong with address/netmask assignment. If you are not
using anything at the moment you will need to pick one.
As for wpasupplicant log - i
On Fri 01 Jun 2007, Peter Nixon wrote:
> On Fri 01 Jun 2007, Elie Hani wrote:
> > Hi;
> >
> > I have freeradius configured on Fedora Core 6, I tried to configure a
> > backup script where I can copy /etc/raddb folder to another server with
> > the same version and the same operating system.
> >
> >
On Fri 01 Jun 2007, Elie Hani wrote:
> Hi;
>
> I have freeradius configured on Fedora Core 6, I tried to configure a
> backup script where I can copy /etc/raddb folder to another server with
> the same version and the same operating system.
>
> When it's done, the command service radiusd start did
Hi;
I have freeradius configured on Fedora Core 6, I tried to configure a backup
script where I can copy /etc/raddb folder to another server with the same
version and the same operating system.
When it's done, the command service radiusd start did not work,
But radiusd -x & worked and the serve
>
> Pilar Sanchez wrote:
> > I put as option of "compile"
> > -with-openssl-libraries=/usr/local/ssl/lib
> > --with-openssl-includes=/usr/local/ssl/include
>
> Maybe that should be with --with-openssl-libraries.
>
> You have -with-openssl-libraries.
I wrote bad in the email but was rigth
12 matches
Mail list logo