EAP-TLS with IAS Issue

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Wireless in Southern Indiana (Indiana_at_discussions.microsoft.com)
Date: 10/11/04


Date: Mon, 11 Oct 2004 11:31:04 -0700

I have EAP-TLS configured and working with user certificates. I want to
instead use Machine certificates because I don't want my users to be able to
export their user certificate to another machine. When I delete my user
certificate from the local user store and have a machine certificate only in
the local computer store, it tells me that "Windows was unable to find a
certificate to log you on to the network". How do I configure EAP-TLS to use
Computer Certificates instead of user certificates? I am using XP w/ SP1 on
the client side. Cisco Aironet 1200's as the AP's and IAS for the radius
piece. I also have a certificate server setup via Microsoft as well.



Relevant Pages

  • Re: Computer and User Certificates Issues
    ... I can't say offhand why the user certificates started working - gremlins?? ... automatic certificate request in Group Policy computer configuration to see ... I can NOT request the custom v2 Computer Cert nor the included ...
    (microsoft.public.security)
  • Auto Enrolment failure after migration to server 2008
    ... The CA was backed up on the old server, and restored onto the new 2008 DC ... The certificate database appears intact. ... User certificates can be requested via the MMC, ... -You do not have the permissions ot request certificates from the available ...
    (microsoft.public.security)
  • Re: Setting up L2TP VPN with Certificates
    ... As I understand it you cannot deploy user certificates unless you have ... Enterprise edition of windows 2003 server. ... Client Computer certificate installed via AutoEnrollment Group Policy. ... On here I have disabled all authentification methods except EAP. ...
    (microsoft.public.windows.server.sbs)
  • Re: How does Outlook retrieve recipient certificates
    ... the certificate has to have email encryption purpose ... tried to add user certificates to the usercertificate attribute on the ... So is there an way to "allow" Outlook to search also in contact ...
    (microsoft.public.security)
  • Cert based VPN connect from non domain machine
    ... I use ISA 2004 for L2TP/IPsec VPN termination which works a treat for domain ... member laptops but I can't seem to get the non-domain machines to ... user certificates for my domain laptops but what I don't seem to be able to ... I've tried using a web server certificate to authenticate the PC but I seem ...
    (microsoft.public.isa.vpn)