Skip to Content.
Sympa Menu

cat-users - Re: [cat-users] problem detected with installer from cat.eduroam.org

cat-users AT lists.geant.org

Subject: The mailing list for users of the eduroam Configuration Assistant Tool (CAT)

List archive

Re: [cat-users] problem detected with installer from cat.eduroam.org


Chronological Thread 
  • From: marcos gonzalez <marcos.gonzalez AT esci.upf.edu>
  • To: Stefan Winter <stefan.winter AT restena.lu>, cat-users AT geant.net
  • Subject: Re: [cat-users] problem detected with installer from cat.eduroam.org
  • Date: Wed, 21 Jan 2015 12:34:42 +0100
  • List-archive: <http://mail.geant.net/pipermail/cat-users/>
  • List-id: "The mailing list for users of the eduroam Configuration Assistant Tool \(CAT\)" <cat-users.geant.net>

Hi

I did more checks. Now I discovered how I have 2 different CA
certificates, first from last certificate (TERENASSLCA.crt), and other
new with new certificate (TERENASSLCA2). I attach.

I don't know which are installed with official installer. The problem
now seems to be how the certificate can't check correctly and I don't
know how to prepare the correct CA.

Thanks

El 21/01/15 a las 12:19, Stefan Winter escribió:
> Hi,
>
>> We are writing to report a problem detected with our users.
>>
>> We are offering the installer from cat.eduroam.org website, and since
>> January we detected how windows 7 and 8.1 pcs connection fails, curiosly
>> If you use mac (version 10.10) or android mobiles, you can connect.
>> Using SecureW2 client last version you can connect in Windows clients
>> and our national support service confirm us how client used by eduroam
>> was GPL version. We are checking how can be possible this, but now the
>> users can't connect and we need support to confirm the problem and
>> repair official installer. Was anyone reporting this problems?
> I haven't heard any report to that effect.
>
> Did the problem start on Jan 1? It's not impossible that Microsoft may
> be enforcing new certificate requirements, and that your server or
> intermediate CA certificate does not meet those new requirements.
>
> If you use a different version of SecureW2 that may or may not hint to a
> problem with our version - maybe the users who try that new version
> simply do not enable the certificate checks properly in their manual
> configuration.
>
> It would be helpful if you could send me the server certificate and CA
> certificate(s) by mail so I could take a closer look. Because I don't
> get any certificate out of the EAP conversation for @upf.edu - maybe you
> are using a Microsoft RADIUS server and it doesn't like my outer identity...
>
> Greetings,
>
> Stefan Winter
>

Attachment: TERENASSLCA2.crt
Description: application/pkix-cert

Attachment: TERENASSLCA.crt
Description: application/pkix-cert




Archive powered by MHonArc 2.6.19.

Top of Page