Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Eap-peap or eap-ttls how to

    Scheduled Pinned Locked Moved Wireless
    12 Posts 4 Posters 4.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • N
      Nachtfalke
      last edited by

      http://doc.pfsense.org/index.php/FreeRADIUS_2.x_package#General_EAP_configuration

      1 Reply Last reply Reply Quote 0
      • C
        chain
        last edited by

        thanks for the information i will give it a try

        1 Reply Last reply Reply Quote 0
        • C
          chain
          last edited by

          If you choose pfSense Cert-Manager then you have to enable it there and choose the certs from the pulldown menue. Click Save.  where would I get this?

          1 Reply Last reply Reply Quote 0
          • M
            Metu69salemi
            last edited by

            System -> Cert Manager

            1 Reply Last reply Reply Quote 0
            • C
              chain
              last edited by

              I have created the cert in the Certificate Authority Manager and Certificate Manager. how do I import the certs from the cert manager to the radius cert folder

              1 Reply Last reply Reply Quote 0
              • AhnHELA
                AhnHEL
                last edited by

                Next to each certificate in System: Certificate Authority Manager there are buttons that are marked with downward arrows.  Click on those buttons to download your created certs and keys.  Screenshot below.

                ![Screen Shot 2012-11-22 at 8.57.54 AM.png](/public/imported_attachments/1/Screen Shot 2012-11-22 at 8.57.54 AM.png)

                AhnHEL (Angel)

                1 Reply Last reply Reply Quote 0
                • C
                  chain
                  last edited by

                  I have the certs, but not sure on to import the cert under /usr/local/etc/raddb/certs, it currently showing the default certs not the ones that I have created a CA, Client, Server Certs

                  1 Reply Last reply Reply Quote 0
                  • N
                    Nachtfalke
                    last edited by

                    @chain:

                    I have the certs, but not sure on to import the cert under /usr/local/etc/raddb/certs, it currently showing the default certs not the ones that I have created a CA, Client, Server Certs

                    If you created the CA cert and the server cert in SYSTEM -> Cert Manager then you have to go to freeradius -> EAP and then select the certificates you created. Then click save and the certificates are in the correct freeradius folder.

                    1 Reply Last reply Reply Quote 0
                    • C
                      chain
                      last edited by

                      I have checked the only area that I can add the cert under is eap-tls is this where I add the certs under?  I'm using eap-peap-mschapv2 for authentications

                      1 Reply Last reply Reply Quote 0
                      • N
                        Nachtfalke
                        last edited by

                        There is only one place where you can select the certificates on freeradius GUI. I attached a screenshot.
                        The certificates you select there can be used for EAP-TLS, EAP-TTLS, EAP-PEAP and so on. :)

                        EAP.jpg
                        EAP.jpg_thumb

                        1 Reply Last reply Reply Quote 0
                        • C
                          chain
                          last edited by

                          Thanks for your help its works great

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.