<div>Well,</div>
<div>sorry bother you again.....</div>
<div> </div>
<div>I found a page that describe how to create CA</div>
<div><a href="http://dsd.lbl.gov/~boverhof/openssl_certs.html">http://dsd.lbl.gov/~boverhof/openssl_certs.html</a></div>
<div> </div>
<div>In this page,</div>
<div>it create CA, server certificate, and client certificate.</div>
<div>If I following his guide,</div>
<div>and create 9 files:</div>
<div>ca.pem, client.key, client.pem, client.req, file.srl,</div>
<div>privkey.pem, server.key, server.pem, server.req</div>
<div> </div>
<div>Which files should I put into RADIUS SERVER's raddb directory?</div>
<div>which files shoud I put into host terminal's /etc/certs directory?</div>
<div> </div>
<div>at RADIUS SERVER,</div>
<div>setup in eap.conf,</div>
<div>private_key_file = privkey.pem</div>
<div>certificate_file = server.pem</div>
<div>CA_file = ca.pem</div>
<div> </div>
<div>at host terminal,</div>
<div>put client.pem into /etc/certs/,</div>
<div>and in wpa_supplicant.conf,</div>
<div>set ca_cert=/etc/certs/client.pem</div>
<div> </div>
<div>Above is my idea,</div>
<div>Is that right?</div>