OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • [SOLVED] PlugIn FreeRADIUS: wrong certifcates are generated
« previous next »
  • Print
Pages: [1]

Author Topic: [SOLVED] PlugIn FreeRADIUS: wrong certifcates are generated  (Read 2823 times)

alh

  • Full Member
  • ***
  • Posts: 123
  • Karma: 6
    • View Profile
[SOLVED] PlugIn FreeRADIUS: wrong certifcates are generated
« on: March 14, 2019, 12:12:15 am »
We have the following setup:

- root ca
- intermediate ca for services
- intermediate ca for users

If we configure EAP-TTLS in the FreeRADIUS plugin we link the radius server cert (issued by intermediate ca for services) and the root ca which is supposed to validate trusted users (intermediate ca for users).

However, the plugin always puts the server cert chain in the file ca_opn instead of the linked ca file. Probably a bug in the script.
« Last Edit: April 14, 2019, 12:07:15 pm by alh »
Logged

mimugmail

  • Hero Member
  • *****
  • Posts: 6767
  • Karma: 494
    • View Profile
Re: PlugIn FreeRADIUS: wrong certifcates are generated
« Reply #1 on: March 14, 2019, 05:51:16 am »
I have to reproduce, never tried with with intermediate CA
Logged
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

alh

  • Full Member
  • ***
  • Posts: 123
  • Karma: 6
    • View Profile
Re: PlugIn FreeRADIUS: wrong certifcates are generated
« Reply #2 on: March 20, 2019, 01:51:18 pm »
I made a PR regarding this. Please check on Github
Logged

mimugmail

  • Hero Member
  • *****
  • Posts: 6767
  • Karma: 494
    • View Profile
Re: PlugIn FreeRADIUS: wrong certifcates are generated
« Reply #3 on: March 20, 2019, 06:47:34 pm »
Ah, yep, forgot it. Will do tomorrow
Logged
WWW: www.routerperformance.net
Support plans: https://www.max-it.de/en/it-services/opnsense/
Commercial Plugins (German): https://opnsense.max-it.de/

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 19.1 Legacy Series »
  • [SOLVED] PlugIn FreeRADIUS: wrong certifcates are generated
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2