PLEASE HELP ! L2TP & Certificates



I apologizr if this isn't the exact area to be asking this. but Ok
heres my current configuration. I
currently have a 2003 domain with 2003 enterprise ras server with pptp
vpn working fine in my corporate network. My boss wants to upgrade to
L2TP security with certificates. Now please bare with me as I am new to
certificates. He wants to physically hand out the certificates via
email or floppy disc. NOT use auto enrollment. As far as VPN users,
Some computers are part of the domain and most are not. Now I setup A
enterprise CA on the VPN server. I installed (or at least i think i
did) the certificates on the client. If i open the
mmc>certificates(LOCAL), the certificate shows up in personal and also
in trusted root ca. My problem is this, #1, I'm not sure what EXACTLY
they mean by machine certificate. I setup IPsec (offline) template and
used that, is that correct for this situation? am i missing something.
As of right now, my status is when i go to connect, it tells me error
786, cant find valid machine cert. I would greatly appreciate it if
anyone has ANY input or direction. Thank you in advance.

.



Relevant Pages

  • Re: 2003/R2 certificate server questions
    ... running OPenSSL to service requests from Linux/samba ... certificates, but I also want to be able to issue random certificates ... Make sure you are running on Enterprise Edition, ... Automatic certs, Key archival and recovery, customizable ...
    (microsoft.public.windows.server.security)
  • Re: Enterprise Subordinate CA signed by third party Commercial CA like Verisign/Thawte/etc
    ... we will need to have trust ... As far as standard versus enterprise, ... If the root CA is compromised your whole PKI ... > your certificates then it would make sense to use your own CA. ...
    (microsoft.public.windows.server.security)
  • Re: client user certificates
    ... in certificates using Windows Server 2003 Enterprise Edition Enterprise CAs ... but it would be nice if there was a way to autoenroll the user. ... We have a Windows Server 2003 domain environment with a Enterprise ...
    (microsoft.public.windows.server.active_directory)
  • RE: CA Client Certificates only expire in one years time
    ... If this was installed as an Enterprise CA this is normal. ... which in v1 templates cannot be modified. ... "For certificates that are issued by Enterprise CAs, the validity period is ...
    (microsoft.public.windows.server.general)
  • EFS certificate renewal
    ... We use EFS in our organization and have a Windows 2003 Enterprise CA ... If the computer is not connected when the renewal period is first ... If the first renewal request is not successful because the Enterprise CA ... certificates, ...
    (microsoft.public.windows.server.security)

Loading