WWF wrote: > But no log is recorded if the certificates is wrong (which is possible > in real scenarios).
It should log that authentication has failed. > I have noticed that if the certificates is wrong, the "radiusd -Xxxxx" > will output things like that: > > Fri Jul 16 17:23:30 2010 : Info: [eap] EAP NAK > Fri Jul 16 17:23:30 2010 : Info: [eap] EAP-NAK asked for EAP-Type/ttls > Fri Jul 16 17:23:30 2010 : Info: [eap] processing type askedtls That message has nothing to do with a wrong certificate. Alan DeKok. - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html