Re: cert bootstrap bug? (was Re: definitely, I have a problem witheap-tls)

2008-08-22 Thread Sergio
Ivan Kalik escribió: However, there may be multiple servers, each with its own cert. Why should a client cert be signed by one server when it may be used with other servers? (radius) Server certificate doesn't have to be unique. You can copy the same certificate to all the radius servers

Re: cert bootstrap bug? (was Re: definitely, I have a problem witheap-tls)

2008-08-22 Thread Ivan Kalik
>However, there may be multiple servers, each with its own cert. Why >should a client cert be signed by one server when it may be used with >other servers? > (radius) Server certificate doesn't have to be unique. You can copy the same certificate to all the radius servers that will be accepting cl

Re: cert bootstrap bug? (was Re: definitely, I have a problem witheap-tls)

2008-08-21 Thread Ivan Kalik
>Pardon me if I've missed something, but as far as I can tell the server >cert isn't authorised to sign client certs And where did you get that idea? Ivan Kalik Kalik Informatika ISP - List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html