[RADIATOR] Radiator evaluation-Authenticate and Authorize LDAP users using SASL EXTERNAL bind to network switch

Sami Keski-Kasari samikk at open.com.au
Tue Apr 30 02:29:42 CDT 2013


Hello Pramod,

I think that problem is in your certificate settings.
You have:
                 SSLCAClientCert C:/Radiator/ldapcertificates/admin.crt
                 SSLCAClientKey C:/Radiator/ldapcertificates/admin.key
So you seems to have your own host certificates for your radius server.

But then you have this:
                 SSLCAFile C:/Radiator/ldapcertificates/demoCA/cacert.pem
Which seems to me that you are using CA file that comes with radiator.

You have to use CA file from your certificate hierarchy.

Thanks,
  Sami

30.04.2013 09:38, Pramod Kulkarni kirjoitti:
> Hello,
> I wanted to know how do u do SASL EXTERNAL binding for LDAP server 
> through radiator for a network switch
> I have added the SSLclient ceritificate and SSLCA certificate in 
> radiator path.
>
>


-- 
Sami Keski-Kasari <samikk at open.com.au>

Radiator: the most portable, flexible and configurable RADIUS server
anywhere. SQL, proxy, DBM, files, LDAP, NIS+, password, NT, Emerald,
Platypus, Freeside, TACACS+, PAM, external, Active Directory, EAP, TLS,
TTLS, PEAP, TNC, WiMAX, RSA, Vasco, Yubikey, MOTP, HOTP, TOTP,
DIAMETER etc. Full source on Unix, Windows, MacOSX, Solaris, VMS,
NetWare etc.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://www.open.com.au/pipermail/radiator/attachments/20130430/392ebc44/attachment.html 


More information about the radiator mailing list