RE: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-13 Thread Zheng, Jiajia
Alan DeKok wrote: > Zheng, Jiajia wrote: >> But as I mentioned that the same CA works fine with EAP-TTLS. Why it >> goes wrong with EAP-TLS? > > EAP-TLS requires that the CA be authorized to sign client > certificates. See the certificate creation scripts in 2.1.8, they may > have fixes for th

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-13 Thread Alan DeKok
Zheng, Jiajia wrote: > But as I mentioned that the same CA works fine with EAP-TTLS. Why it goes > wrong with EAP-TLS? EAP-TLS requires that the CA be authorized to sign client certificates. See the certificate creation scripts in 2.1.8, they may have fixes for this. Alan DeKok. - List info

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread sunhualing
检查一下时间系统,要求在证书的有效期内 CA的事情有点难说,你再检查下配置 On Thu, May 13, 2010 at 10:53 AM, Zheng, Jiajia wrote: > Alan DeKok wrote: > > Zheng, Jiajia wrote: > >>> 11. EAP-TLS failed, see the attached tls.log for the output of > >>> radiusd Could you help me out on this issue? > > > > Paste the debug output into t

Re: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Alan DeKok
Zheng, Jiajia wrote: >> 11. EAP-TLS failed, see the attached tls.log for the output of radiusd >> Could you help me out on this issue? Paste the debug output into the "self-help" form at: http://networkradius.com/freeradius.html Look for red text. >> Is there anything I did wrong? Let me kn

RE: How to implement EAP-TLS with freeradius and wpa_supplicant?

2010-05-12 Thread Zheng, Jiajia
Sorry, I forgot the subject. Zheng, Jiajia wrote: > Hi, > I hope it is the right place to ask questions about EAP-TLS with > radius server. > I installed freeradius-2.1.6 rpm package on my Fedora 10 system. > EAP_PEAP, EAP_TTLS_CHAP, TTLS_MD5, TTLS_MSCHAP, etc. work fine. > However, EAP-TLS hand