[strongSwan] query on client authentication using EAP-TLS

Martin Willi martin at strongswan.org
Wed Sep 19 13:39:07 CEST 2012


> no TLS peer certificate found for '01234567 at ims.mnc212.mcc091.3gppnetwork.org',
> skipping client authentication

Your configuration uses this client ID, but you didn't configure a
certificate. Try to define a certificate to use for TLS authentication
using the "leftcert" option. This certificate must contain the identity
defined as "leftid" (as your AAA does not request an EAP-Identity),
either as the certificate subject DN, or as a subjectAltName.


