Advanced usage of Radsec and PKI integration?

Yoann Gini <[email protected]>
Newsgroups gmane.comp.freeradius.user
Message-ID <[email protected]>
Hello,

I’m looking at the following Radsec documentation for FreeRadius and I’m lacking some details, maybe someone here can share some guidance?

https://www.freeradius.org/documentation/freeradius-server/3.2.8/howto/protocols/proxy/enable_radsec.htmlhttps://www.freeradius.org/documentation/freeradius-server/3.2.8/howto/protocols/proxy/enable_radsec.html

My goal here is to simplify the use of FreeRadius by solely relying on Certificate Based Authentication for the client, and so, finding a way to configure FreeRadius to accept all client, regardless of their IP, if they can authenticate with a certificate coming from a specific PKI and that is currently not revoked in the PKI’s CRL.

My goal here is to easily provide Cloud Radius for remote network who might by on non static IP address or behind CG-NAT.

Best regards
Yoann
-
List info/subscribe/unsubscribe? See http://www.freeradius.org/list/users.html
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.