(RADIATOR) Trouble with self signed certificates
Mike McCauley
mikem at open.com.au
Tue Nov 16 17:44:05 CST 2004
Hello again Phil,
Looking at this:
Tue Nov 16 15:36:47 2004: ERR: TLS could not use_PrivateKey_file
> > /etc/radiator/certificates/demoCA/private/cakey.pem,
I suspect you have specified your CA private key file where the server private
key file should be in EAPTLS_PrivateKeyFile.
On Wednesday 17 November 2004 09:33, Mike McCauley wrote:
> Hello Phil,
>
> It probably means either:
>
> 1. The private key file is encrypted, but you have not configured the
> correct EAPTLS_PrivateKeyPassword.
>
> or
>
> 2. The private key file is corrupted or in the wrong format.
>
> Cheers.
>
> On Wednesday 17 November 2004 09:17, Phil Ershler wrote:
> > I am trying to use some self signed certificates with Radiator. From
> > the logfile, it's obvious that there are problems.
> > What is this part of the log trying to tell me?
> >
> > Tue Nov 16 15:36:47 2004: ERR: TLS could not use_PrivateKey_file
> > /etc/radiator/certificates/demoCA/private/cakey.pem, 1: 18671: 1 -
> > error:0906D06C:PEM routines:PEM_read_bio:no start line
> > 18671: 2 - error:06065064:digital envelope
> > routines:EVP_DecryptFinal:bad decrypt
> > 18671: 3 - error:0906A065:PEM routines:PEM_do_header:bad decrypt
> > 18671: 4 - error:140B0009:SSL routines:SSL_CTX_use_PrivateKey_file:PEM
> > lib
> >
> > Thanks, Phil
> >
> > --
> > Archive at http://www.open.com.au/archives/radiator/
> > Announcements on radiator-announce at open.com.au
> > To unsubscribe, email 'majordomo at open.com.au' with
> > 'unsubscribe radiator' in the body of the message.
--
Mike McCauley mikem at open.com.au
Open System Consultants Pty. Ltd Unix, Perl, Motif, C++, WWW
9 Bulbul Place Currumbin Waters QLD 4223 Australia http://www.open.com.au
Phone +61 7 5598-7474 Fax +61 7 5598-7070
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS,
TTLS, PEAP etc on Unix, Windows, MacOS etc.
--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.
More information about the radiator
mailing list