(RADIATOR) EAPTLS check ID question for MS certs

Markus Moeller huaraz at moeller.plus.com
Mon Feb 25 16:16:32 CST 2008


I would like to use MS certs which have a UPN as subject_alt_name and do the ID check against this instead of the subject name. 

If I checked right SSLeay can get the array with:

   my @subjectAlt = &Net::SSLeay::X509_get_subjectAltNames($cert); 

which could be added to EAP_13.pm.

At the moment  I have to disable the check as the identity is user at COMPANY.COM and does not match the subject name but the subject alt name.


Thank you
Markus
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.open.com.au/pipermail/radiator/attachments/20080225/42e755e4/attachment.html>


More information about the radiator mailing list