]> git.ipfire.org Git - thirdparty/freeradius-server.git/commitdiff
Make "cadir" and "certdir" globals
authorAlan T. DeKok <aland@freeradius.org>
Fri, 10 Jun 2011 12:52:57 +0000 (14:52 +0200)
committerAlan T. DeKok <aland@freeradius.org>
Fri, 10 Jun 2011 12:52:57 +0000 (14:52 +0200)
raddb/modules/eap
raddb/radiusd.conf.in
raddb/sites-available/tls

index 4c9a661db47119387541bf9bbd6216449a8d54c9..237d8be09575dddcb033f7687fae1e7c3571bc4f 100644 (file)
                #  ANYONE who has a certificate signed by them can
                #  authenticate via EAP-TLS!  This is likely not what you want.
                tls {
-                       #
-                       #  These is used to simplify later configurations.
-                       #
-                       certdir = ${confdir}/certs
-                       cadir = ${confdir}/certs
-
                        private_key_password = whatever
                        private_key_file = ${certdir}/server.pem
 
index 22205327006ee177b9d7f392330d6552030c3f21..baa8cfa121bbcadab530764dfb522e135b3f69ef 100644 (file)
@@ -66,6 +66,8 @@ name = radiusd
 
 #  Location of config and logfiles.
 confdir = ${raddbdir}
+certdir = ${raddbdir}/certs
+cadir   = ${raddbdir}/certs
 run_dir = ${localstatedir}/run/${name}
 
 # Should likely be ${localstatedir}/lib/radiusd
index 7327500c917800e23e712ee2e9e2e4dca3ad0107..128130b18518396debdf9a595829d02983a273f7 100644 (file)
@@ -19,12 +19,6 @@ listen {
        #  idea to use different server certificates for EAP and for RADIUS
        #  transport.
        tls {
-               #
-               #  These is used to simplify later configurations.
-               #
-               certdir = ${confdir}/certs
-               cadir = ${confdir}/certs
-
                private_key_password = whatever
                private_key_file = ${certdir}/server.pem
 
@@ -275,12 +269,6 @@ home_server tls {
        status_check = status-server
 
        tls {
-               #
-               #  These is used to simplify later configurations.
-               #
-               certdir = ${confdir}/certs
-               cadir = ${confdir}/certs
-
                private_key_password = whatever
                private_key_file = ${certdir}/client.pem