[RADIATOR] certificate problems

Eric W. Bates ericx at whoi.edu
Wed Jun 3 12:57:14 UTC 2020


oops..
Just found rad_eap_test
https://github.com/CESNET/rad_eap_test

On 6/3/20 8:44 AM, Eric W. Bates wrote:
> We use certificates signed by InCommon and over the weekend several 
> older intermediate certificates expired; so I updated the chain file.
> 
> Now I'm getting:
> 
> Tue Jun  2 22:21:17 2020 630517: DEBUG: EAP result: 1, EAP TTLS 
> Handshake unsuccessful:  2861: 1 - error:14094418:SSL 
> routines:SSL3_READ_BYTES:tlsv1 alert unknown ca
> 
> so from "unknown ca" I have to assume I screwed up the chain.
> 
> Is there a way similar to "openssl s_client" to pull the certificate 
> chain from Radiator? I just want to confirm what cert chain is being 
> offered.
> 
> 
> _______________________________________________
> radiator mailing list
> radiator at lists.open.com.au
> https://lists.open.com.au/mailman/listinfo/radiator
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4188 bytes
Desc: S/MIME Cryptographic Signature
URL: <https://lists.open.com.au/pipermail/radiator/attachments/20200603/23e977d7/attachment.p7s>


More information about the radiator mailing list