Once the final certificates have been created, you can delete the
"bootstrap" command from this directory, and delete the
"make_cert_command" configuration from the "tls" sub-section of
-eap.conf.
+"raddb/mods-available/eap".
If you do not want to enable EAP-TLS, PEAP, or EAP-TTLS, then delete
-the relevant sub-sections from the "eap.conf" file.
+the relevant sub-sections from the "raddb/mods-available/eap" file.
MAKING A ROOT CERTIFICATE
see them, it will stop doing EAP. The most visible effect is
that the client starts EAP, gets a few Access-Challenge packets,
and then a little while later re-starts EAP. If this happens, see
- the FAQ, and the comments in raddb/eap.conf for how to fix it.
+ the FAQ, and the comments in "raddb/mods-available/eap" for how to
+ fix it.
- Windows requires the root certificates to be on the client PC.
If it doesn't have them, you will see the same issue as above.