Certificate verification

2007-08-20 Thread abhishek singh
I am using Free radius to perform EAP_TLS negotiations. When we send client certificates for validations, does free radius imposes any depth on the certification validation. What i mean to say , if the certificate is self signed , then certificate will not be accepted by the Free radius. If the fr

Re: Ipsec EAP_TLS

2007-08-18 Thread abhishek singh
I am replying to my question. I did some implemenatation. Free radius does provide capability where these keys are transferred to the VPN gateway. They are in the last messages, after the handshake is successfully completed. On 8/17/07, Josh Howlett <[EMAIL PROTECTED]> wrote: > > > Does the cur

Ipsec EAP_TLS

2007-08-16 Thread abhishek singh
Hi every One, Does the implementation of free radius provide support EAP-TLS authentication in IpSec ? After the TLS handshake (between the IPsec client and the free radius server ) is complete, shared master key will be generated at the VPN client and at the radius server. Does the current i

EAP-TLS Certificates

2007-08-13 Thread abhishek singh
I am using free radius 1.1.6 for EAP-TLS. I think all the example certificates are old. Is there a place from where i can download some sample certificates (both for free radius and for client) which can be used for communication. - List info/subscribe/unsubscribe? See http://www.freeradius.org/li

Client Cetificates

2007-08-10 Thread abhishek singh
I am using Free radius to perform EAP-TLS. However when my client certificates reaches EAP, following error is generated. Is there any specific requirement (in terms of encoding) for the client side certificates. Any help will be appreciated. Thanks in advance. rlm_eap: Request found, releas

EAP-TLS Free Radius

2007-08-05 Thread abhishek singh
Hi, I am using Free radius for EAP-TLS Session establishment. however before the TLS handshake is complete, my radius server asks for client certificates. Is there any way (some option in configuration file) i can complete the TLS handshake with Free radius server without client certificates. Th

Failed to validate user

2007-08-01 Thread abhishek singh
Hi, I am trying to establish EAP-TLS communication. My client having certificate ( [EMAIL PROTECTED]) sends HELLO to free radius, via a pass through server having IP address 172.25.13.61. Free radius gets the hello via pass through server and bails out saying it fails to authenticate user. I th

EAP-TLS

2007-07-31 Thread abhishek singh
Hi, I have a setup where my client is trying to perform authentication to server by using EAP-TLS. The server is a pass through server, which forwards the packet to the free radius. The free radius, instead of sending the server certificates, bails out on seeing the client Hello and the TLS hand

EAP-TLS

2007-07-31 Thread abhishek singh
Hi, I have a setup where my client is trying to perform authentication to server by using EAP-TLS. The server is a pass through server, which forwards the packet to the free radius. The free radius, instead of sending the server certificates, bails out on seeing the client Hello and the TLS hand