VPN L2TP [Error 786: The L2TP connection failed bec...]

From: James_patageul (Twinsen24_at_hotmail.Com)
Date: 09/19/04


Date: Sun, 19 Sep 2004 02:08:08 +0200

Hello people,

I have a Windows 2003 server enterprise ans i would like to run a VPN server
based on L2TP technologie
This server is placed after a gateway USR sure connect (9106)
http://www.usr-emea.com/products/p-broadband-product.asp?prod=bb-9106&loc=bene

So this is the step that i have made

-> Install of IIS

-> Install of CA

        here i dont know what is must put in common name & distinguished
name suffix and i dont know if this is important for the next...

        i dont know which provider crypto & algorithm haching i must to take
!!

        i have enter nothing in the distinguished name suffix because when
i try to enter something he say that's not good syntaxe..

-> Asking a certificate from the Browser (certsrv)

        here i have follow this way
        request a certificat / advanced certificate request / create and
submit a request to this CA

        then here i have put the computer name (client(not the win2k3) in
the field name/ (may be i must the fill a account name and not the computer
name ?)

        inside type of certificate i have choose: client Authtification
Certificate / may be i have to choose IPSec Certificate ??

        after that i have let turned on create new key set
        CSP: microsoft enhanced Cryptographic Provider V1.0
        key usage: Both
        Key size: 1024

        i have checked
       Automatic key container name
       &
       Store certificate in the local computer certificate store

       request format: CMC
       hash algo: SHA-1

-> Issued certificate from the CA

-> Install certificat (on the client computer)

     the certificat was installed under the account of computer inside
personal/certificats

-> Activated Routing & remote acces

    here i have choose VPN & NAT (because i need the NAT )
    basic firewall is on
    ip adresse assignement via ip range
    enable basic name & adress services is on (for the nat)
    radius=non

THE ERROR
So, now when i try to connect on this VPN with my client (win XP) i'have got
this error:

Error 786: The L2TP connection failed because there is no valid machine
certificate on your computer for security authentication

But when i let do the client in auto mode he select the PPTP and then IS
WORK but is not L2TP like i need :-(

So i think the "bug" is in the process of CA (because i'm a real noob in
this section)

PLEASE HELP ME !!

thank a lot to have take the time for read this post (and maybe answer it ?)



Relevant Pages

  • error 786: L2tp/ipsec VPN server
    ... windows 2000 active directory domain. ... In that domain is the server called VPN with windows 2003 standard edition ... Certificate server, VPN server, institutions on ...
    (microsoft.public.isa.vpn)
  • Re: VPN L2TP [Error 786: The L2TP connection failed bec...]
    ... First off L2TP will not work over regular NAT. ... The other concern is that both the VPN server and the client need computer ... certificates in there certificate store personal folder for computers. ...
    (microsoft.public.windows.server.networking)
  • L2TP VPN setup on SBS2003 R2 Standard (non-isa) ERROR 792
    ... I am trying to setup L2TP VPN on SBS2003 R2 Standard. ... Using Certificate Authentification. ... Server Computer Certificate Installed. ... On the server I opened Routing and Remote Access. ...
    (microsoft.public.windows.server.sbs)
  • Windows 2003 VPN with L2TP.
    ... Windows 2003 Server DC, Global Catalog, RRAS - single network. ... VPN Server, AD Certificate Server. ...
    (microsoft.public.win2000.ras_routing)
  • Re: VPN and User certificates
    ... I intend to use an internal Microsoft CA installed on windows server ... Services and have installed a computer certificate on a test VPN ... I have also changed the VPN server policy to only allow ... containing the newly revoked certificate is not automatically published. ...
    (microsoft.public.windows.server.general)

Quantcast