]> git.ipfire.org Git - thirdparty/freeradius-server.git/commitdiff
No need to warn about short shared secret for RadSec connections
authorNick Porter <nick@portercomputing.co.uk>
Mon, 13 Jan 2025 11:26:47 +0000 (11:26 +0000)
committerNick Porter <nick@portercomputing.co.uk>
Mon, 13 Jan 2025 11:26:47 +0000 (11:26 +0000)
src/main/client.c

index b7a8a4573af724d3bf73dd652e75d935b6a6ce3c..2c3581b2c74ccdecd086b139ad696d230412d837 100644 (file)
@@ -1219,7 +1219,11 @@ done_coa:
        /*
         *      Be annoying to people, but it's about security.
         */
+#ifdef WITH_TLS
+       if (!c->tls_required && (strlen(c->secret) < 12)) {
+#else
        if (strlen(c->secret) < 12) {
+#endif
                WARN("Shared secret for client %s is short, and likely can be broken by an attacker.",
                     c->shortname);
        }