(RADIATOR) Trouble with self signed certificates

Mike McCauley mikem at open.com.au
Tue Nov 16 17:44:05 CST 2004


Hello again Phil,

Looking at this:

Tue Nov 16 15:36:47 2004: ERR: TLS could not use_PrivateKey_file
> > /etc/radiator/certificates/demoCA/private/cakey.pem, 

I suspect you have specified your CA private key file where the server private 
key file should be in 	EAPTLS_PrivateKeyFile.



On Wednesday 17 November 2004 09:33, Mike McCauley wrote:
> Hello Phil,
>
> It probably means either:
>
> 1. The private key file is encrypted, but you have not configured the
> correct EAPTLS_PrivateKeyPassword.
>
> or
>
> 2. The private key file is corrupted or in the wrong format.
>
> Cheers.
>
> On Wednesday 17 November 2004 09:17, Phil Ershler wrote:
> > I am trying to use some self signed certificates with Radiator. From
> > the logfile, it's obvious that there are problems.
> > What is this part of the log trying to tell me?
> >
> > Tue Nov 16 15:36:47 2004: ERR: TLS could not use_PrivateKey_file
> > /etc/radiator/certificates/demoCA/private/cakey.pem, 1:  18671: 1 -
> > error:0906D06C:PEM routines:PEM_read_bio:no start line
> >   18671: 2 - error:06065064:digital envelope
> > routines:EVP_DecryptFinal:bad decrypt
> >   18671: 3 - error:0906A065:PEM routines:PEM_do_header:bad decrypt
> >   18671: 4 - error:140B0009:SSL routines:SSL_CTX_use_PrivateKey_file:PEM
> > lib
> >
> > Thanks, Phil
> >
> > --
> > Archive at http://www.open.com.au/archives/radiator/
> > Announcements on radiator-announce at open.com.au
> > To unsubscribe, email 'majordomo at open.com.au' with
> > 'unsubscribe radiator' in the body of the message.

-- 
Mike McCauley                               mikem at open.com.au
Open System Consultants Pty. Ltd            Unix, Perl, Motif, C++, WWW
9 Bulbul Place Currumbin Waters QLD 4223 Australia   http://www.open.com.au
Phone +61 7 5598-7474                       Fax   +61 7 5598-7070

Radiator: the most portable, flexible and configurable RADIUS server 
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald, 
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS, 
TTLS, PEAP etc on Unix, Windows, MacOS etc.

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list