How can I request a certificate for L2TP VPN?



Hello,

i'm reading a german book "ISA Server 2004" at the moment. Actually
I'm running VPN access via PPTP. I want to switch to L2TP with
certificates now.

The book tells me to:

- install a certificate authority (already existing on a 2003
memberserver in our domain)
- Visit http://servername/certsrv
- Request a certificate (Extended request)
- Choose IPSec-Certificate as certificate type.

But there is no option for certificate type. I can choose different
templates: (user, base efs, ...) but no certficate type and no IPSec
anywhere.

What am I doing wrong? I read somewhere, that requesting IPSec
certificates is disabled by default. But I don't know how to enable
it. Another posting said I don't even need IPSec certificates.

Can you tell me the truth?

Thank you!

Alfred

.



Relevant Pages

  • Re: ipsec with certificate authentication issue
    ... I added the offline ipsec cert template one my ... CA and installed one on both client and server. ... chose to download the .cer file for the CA's certificate and manually ...
    (microsoft.public.win2000.security)
  • Re: NAP IPsec with HRA problem
    ... between the 2 pcs using IPSEC. ... certificate for authentication was not found on this computer. ... As for the DC GPO, I would suggest to leave the default GPOs alone and create a separate GPO for the IPSec policy. ... Administrator's Guide to Microsoft L2TP/IPSec VPN Client ...
    (microsoft.public.windows.server.active_directory)
  • Re: Why doesnt IPSEC respect revoked certificates.
    ... You are probably seeing a cached CRL which is normal and expected behavior. ... > 1) Enterprise Certificate Authority, ... > 3) Created IPSEC Policies that require IPSEC for port 25 traffic- using ... > need to be on the Server and the Client - or else it doesn't work. ...
    (microsoft.public.win2000.security)
  • Why doesnt IPSEC respect revoked certificates.
    ... Enterprise Certificate Authority, ... issued Offline IPSEC Certificates to two machines - both in different ... Restarted IPSEC Policy Agent on both machines. ...
    (microsoft.public.win2000.security)
  • IPSEC help
    ... I am new to ipsec and trying to connect my bsd server with win 2000. ... But regarding certificate, ... proposal_check obey; ...
    (FreeBSD-Security)

Loading