Re: EAP-TLS authentication in Win2003 Standard Edition

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Cool, I'm glad you figured it out =)

--
Greg Lindsay [MSFT]

Disclaimer: This posting is provided "AS IS" with no warranties, and confers
no rights.

"Al" <Al@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:5D2B6150-9122-4CFF-B62B-546DB46ABC4A@xxxxxxxxxxxxxxxx
Hi Greg, thanks for your reply.

I already have the whole thing in place.

I was goofing, since I was requesting the certificate logged in as
Administrator. I only realized that when I tried the request using the
snap-in.

Once again, thanks for your time and have a good one.

"Greg Lindsay [MSFT]" wrote:

Hi Alvaro,

Windows Sever 2003 Standard Edition does not issue version 2 certificate
templates, which are required to autoenroll certificates. You need to
either
use the certificates snap-in, or web enrollment to request a certificate.
You will need to request the certificate on the client using the
certificate
request wizard or web enrollment, and (depending on user rights) approve
the
certificate to be issued on the CA using the certificate authority
snap-in.
See the link below for instructions on how to use the certificate request
wizard and web enrollement.

http://support.microsoft.com/kb/895433/en-us

I hope this helps!

--
Greg Lindsay [MSFT]

Disclaimer: This posting is provided "AS IS" with no warranties, and
confers
no rights.

"Al" <Al@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:AA0C2A1E-5F23-41B9-B647-146900CF7B9F@xxxxxxxxxxxxxxxx
Hi Folks.

In our AD we have 2 domain controllers (PDC & BDC), both running 2003
Standard Edition. We want to deploy a secure wireless network using
certificates for users and computers. The problem is that when I try to
issue
a user certificate (CA installed on the PDC), it always shows the
Administrator as the user. I have read tons of documents regarding this
subject, but most of them talks about autoenrollment in a 2003 server
Enterprise Edition. Is it possible to implement EAP-TLS authentication
in
a
2003 Standard Edition?

Thanks in advance.

Regards,


Alvaro Motta





.



Relevant Pages

  • Re: Computer and User Certificates Issues
    ... Enrollment of User Certificates using the custom v2 User Certificate Template ... I can NOT request the custom v2 Computer Cert nor the included v1 no ... Concerning permissions, these are the exact permissions I am using now: ...
    (microsoft.public.security)
  • Re: Cannot request computer certificate.
    ... request a computer certificate for about 9 months. ... and verify that you can get a computer/server certificate from it. ... List of NetBt transports currently bound to the Redir ... DNS Host Name: srvr3.domain.com ...
    (microsoft.public.windows.server.security)
  • RE: SIMple SSL question ??
    ... OK - i would also delete a cert request file lying around. ... But a certificate is a pub key + extra info. ... That said - if someone compromises the server he will also find a way to retrieve the private key. ... traffic between the initial web server and the client. ...
    (microsoft.public.dotnet.security)
  • Re: how can we restrict what certificate WSE will use?
    ... the valid x509 certificate which is used to identify him'. ... X509SecurityTokenManager to verify the request is from a trusted client. ... the problem is that he can not passed the authentication (suppose we ... > decrypte and signature validation process. ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Re: IIS cert denied
    ... install it again.Then try creating certificate request. ... This posting is provided "AS IS" with no warranties, and confers no rights. ... >Microsoft Developer Support ...
    (microsoft.public.inetserver.iis.security)