From: Alan T. DeKok Date: Mon, 4 Nov 2019 20:22:58 +0000 (-0500) Subject: notes on iOS 13 X-Git-Tag: release_3_0_20~23 X-Git-Url: http://git.ipfire.org/cgi-bin/gitweb.cgi?a=commitdiff_plain;h=c194e9aec3fc9aeef57a6726fed71b3e3441ca13;p=thirdparty%2Ffreeradius-server.git notes on iOS 13 --- diff --git a/raddb/certs/README b/raddb/certs/README index ed7cb95dfad..6288921da10 100644 --- a/raddb/certs/README +++ b/raddb/certs/README @@ -180,6 +180,9 @@ $ openssl speed rsa2048 The certificates created using this method are known to be compatible with ALL operating systems. Some common issues are: + - iOS 13 has stringent new requirements on certificates. See: + https://support.apple.com/en-us/HT210176 + - Windows requires certain OIDs in the certificates. If it doesn't see them, it will stop doing EAP. The most visible effect is that the client starts EAP, gets a few Access-Challenge packets,