Mac OS X EAP-TLS with wrong usename kills freeradius when

This is a discussion on Mac OS X EAP-TLS with wrong usename kills freeradius when within the FreeRADIUS Users forums, part of the Networking and Network Related category; Hi, We are building freeradius server to authenticate WLAN users with EAP-TLS and EAP-PEAP. EAP-PEAP works great ...


Go Back   Usenet Forums > Networking and Network Related > FreeRADIUS Users

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-18-2007
Miika Räisänen
 
Posts: n/a
Default Mac OS X EAP-TLS with wrong usename kills freeradius when


Hi,


We are building freeradius server to authenticate WLAN users with
EAP-TLS and EAP-PEAP. EAP-PEAP works great with all tested operating
systems, but Mac OS X 802.1X client with EAP-TLS kills freeradius if
check_cert_cn is set on and Mac OS X user sends user name which does not
match with certificate's common name. Operating system version is 10.4.8
and it runs on Macbook. If Window XP user sets different outer identity
than cert's common name freeradius works ok (user gets rejected).

We have tested following freeradius server versions on following platforms
Freeradius 1.1.1 / SUN Os 5.8
Freeradius 1.1.3 (FC6's rpm) / FC6
Freeradius 1.1.4 (build from source)/ FC6
Freeradius snapshot 20070118 (build from source) / FC6
Freeradius 1.1.4 (build from source) / CentOS 4.4

FC and Centos are using distros default openssl libs etc.

Heres some log and debug from CentOS with freerad 1.1.4

http://cc.oulu.fi/~mraisane/tmp/radiusd.txt

Any ideas, fixes or workarounds?
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 04:29 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0