[prev in list] [next in list] [prev in thread] [next in thread] 

List:       freeradius-users
Subject:    Re: TLS Alert read:fatal:internal error
From:       Alan DeKok <aland () deployingradius ! com>
Date:       2021-05-30 13:33:44
Message-ID: 7183EE5F-B2A0-4C8D-95FB-4716F97C8D6A () deployingradius ! com
[Download RAW message or body]

On May 30, 2021, at 7:21 AM, Piotr Rudzki <ryba.lodz@gmail.com> wrote:
> 
> I've managed to resolve problem. Client device to verify certificate needs
> domain listed in the server's certificate CN or SAN, but I've got only
> server's FQDN in CN and IP in SAN. When I pass FQDN as domain it work's as
> expected.

  Ah, OK.

  I suspect that the "internal" error is that you're running an older version of \
FreeRADIUS, which doesn't understand all of the newer OpenSSL errors.

  It should be better with 3.0.22.

  Alan DeKok.


-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic