[RADIATOR] Net-SSLeay 1.3.5 on Solaris 10
Mike McCauley
mikem at open.com.au
Fri Nov 20 17:11:50 CST 2009
Hello Markus,
On Saturday 21 November 2009 06:10:02 am Markus Moeller wrote:
> Hi,
>
> I try to use Radiator on Solaris 10 for certificate based Wireless
> authentication. When I enable EAPTLS_CRLCheck I get the below:
>
> Fri Nov 20 14:33:55 2009: WARNING: EAPTLS_CRLCheck cannot be enabled since
> the installed version of Net::SSLeay does not support
> X509_STORE_set_flags. Upgrade Net::SSLeay to 1.30 and OpenSSL to 0.9.8 or
> later: Can't locate auto/Net/SSLeay/X509_STORE_.al in @INC (@INC contains:
> .
> /opt/Radiator/lib/site_perl/5.8.8/sun4-solaris-thread-multi/opt/Radiator/li
>b/site_perl/5.8.8 /opt/perl/lib/5.8.8/sun4-solaris-thread-multi
> /opt/perl/lib/5.8.8/opt/perl/lib/site_perl/5.8.8/sun4-solaris-thread-multi/
>opt/perl/lib/site_perl/5.8.8 /opt/perl/lib/site_perl .) at
> /opt/Radiator/lib/site_perl/5.8.8/Radius/TLS.pm line 356
>
>
> Is there anyway to get this working with the Solaris 10 native openssl
> package ?
CRL checking is not supported by OpenSSL prior to 0.9.8, hence the message.
All other features (except EAP-FAST) used by Radiator are supported in
earlier versions of OpenSSL
On Solaris we prefer not to use the native Sun Perl, but to use the prebuilt
perl packages from http://www.sunfreeware.com. The latest version there for
Sol 10 Sparc is 0.9.8l
Hope that helps.
Cheers.
>
> Thank you
> Markus
--
Mike McCauley mikem at open.com.au
Open System Consultants Pty. Ltd
9 Bulbul Place Currumbin Waters QLD 4223 Australia http://www.open.com.au
Phone +61 7 5598-7474 Fax +61 7 5598-7070
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS,
TTLS, PEAP, TNC, WiMAX, RSA, Vasco, Yubikey, DIAMETER etc. Full source
on Unix, Windows, MacOSX, Solaris, VMS, NetWare etc.
More information about the radiator
mailing list