HTFC Forums

H.T.F.C.

How To Fix Computers





Go Back   HTFC Forums > Software Newsgroups > Windows XP > XP Networking

Register FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1  
Old 11-28-2007, 07:54 AM
Michael Ellis
 
Posts: n/a
Default VPN using L2TP and certificates

Hi,

I am trying to create a VPN using L2TP with authentication by a
certificate. I have created the certificate (PKCS12), imported into the
Certificates (LOcal Computer)\Personal\Certificates.

When trying to use the L2TP VPN connection (client), Windows reports
that a suitable certificate is not found (error 798) for EAP.

The certificate was created using openssl (as opposed to a Microsoft
Certificate Services).

My problem could be
- I imported the certificate into the wrong location
- The certificate is not compatible with Microsoft's schannel
- Something else I can't figure out

If anyone out there can shed any light on this problem, including
confirming that I imported the certificate into the right place, I would
appreciate it.

Thanks in advance.

Kind regards,
Michael.
Reply With Quote
Sponsored Links
  #2  
Old 11-28-2007, 08:33 PM
Marek
 
Posts: n/a
Default RE: VPN using L2TP and certificates

What kind of VPN server?

You must have MS PKI implemented in you enviroment.
Enterprise or stand alone Certification Authority installed.

More info about implementing PKI in MS enviroment:
http://www.microsoft.com/windowsserv...fault.mspx#EEF


"Michael Ellis" wrote:

> Hi,
>
> I am trying to create a VPN using L2TP with authentication by a
> certificate. I have created the certificate (PKCS12), imported into the
> Certificates (LOcal Computer)\Personal\Certificates.
>
> When trying to use the L2TP VPN connection (client), Windows reports
> that a suitable certificate is not found (error 798) for EAP.
>
> The certificate was created using openssl (as opposed to a Microsoft
> Certificate Services).
>
> My problem could be
> - I imported the certificate into the wrong location
> - The certificate is not compatible with Microsoft's schannel
> - Something else I can't figure out
>
> If anyone out there can shed any light on this problem, including
> confirming that I imported the certificate into the right place, I would
> appreciate it.
>
> Thanks in advance.
>
> Kind regards,
> Michael.
>

Reply With Quote
  #3  
Old 11-29-2007, 04:20 AM
Michael Ellis
 
Posts: n/a
Default RE: VPN using L2TP and certificates

Hi, The VPN server is Windows 2000 Server. The problem is at the
client end not recognising the certificate. There is a Microsoft
support page that states that third party certificates can be used so
this is what I am attempting.

The client doesn't find/recognise the certificate so it doesn't even
attempt to make the connection.

Thanks.

Kind regards,
Michael.

=?Utf-8?B?TWFyZWs=?= <Marek@discussions.microsoft.com> wrote in
news:A95081A3-1947-4BDA-9618-B3C29FB22F9D@microsoft.com:

> What kind of VPN server?
>
> You must have MS PKI implemented in you enviroment.
> Enterprise or stand alone Certification Authority installed.
>
> More info about implementing PKI in MS enviroment:
> http://www.microsoft.com/windowsserv...pki/default.ms

p
> x#EEF
>
>
> "Michael Ellis" wrote:
>
>> Hi,
>>
>> I am trying to create a VPN using L2TP with authentication by a
>> certificate. I have created the certificate (PKCS12), imported into
>> the Certificates (LOcal Computer)\Personal\Certificates.
>>
>> When trying to use the L2TP VPN connection (client), Windows reports
>> that a suitable certificate is not found (error 798) for EAP.
>>
>> The certificate was created using openssl (as opposed to a Microsoft
>> Certificate Services).
>>
>> My problem could be
>> - I imported the certificate into the wrong location
>> - The certificate is not compatible with Microsoft's schannel
>> - Something else I can't figure out
>>
>> If anyone out there can shed any light on this problem, including
>> confirming that I imported the certificate into the right place, I
>> would appreciate it.
>>
>> Thanks in advance.
>>
>> Kind regards,
>> Michael.
>>

>


Reply With Quote
  #4  
Old 11-29-2007, 07:48 AM
Marek
 
Posts: n/a
Default RE: VPN using L2TP and certificates

May be the simplest way to make it functional is to implement MS PKI rather
than spending hours with this unknown issue.

Computer ceritiface must be issued by CA known for RRAS server. Yes you
import certificate to client machine, but how RRAS server know that this is
the certificate issued by trusted authority? With what RRAS server compare it?



"Michael Ellis" wrote:

> Hi, The VPN server is Windows 2000 Server. The problem is at the
> client end not recognising the certificate. There is a Microsoft
> support page that states that third party certificates can be used so
> this is what I am attempting.
>
> The client doesn't find/recognise the certificate so it doesn't even
> attempt to make the connection.
>
> Thanks.
>
> Kind regards,
> Michael.
>
> =?Utf-8?B?TWFyZWs=?= <Marek@discussions.microsoft.com> wrote in
> news:A95081A3-1947-4BDA-9618-B3C29FB22F9D@microsoft.com:
>
> > What kind of VPN server?
> >
> > You must have MS PKI implemented in you enviroment.
> > Enterprise or stand alone Certification Authority installed.
> >
> > More info about implementing PKI in MS enviroment:
> > http://www.microsoft.com/windowsserv...pki/default.ms

> p
> > x#EEF
> >
> >
> > "Michael Ellis" wrote:
> >
> >> Hi,
> >>
> >> I am trying to create a VPN using L2TP with authentication by a
> >> certificate. I have created the certificate (PKCS12), imported into
> >> the Certificates (LOcal Computer)\Personal\Certificates.
> >>
> >> When trying to use the L2TP VPN connection (client), Windows reports
> >> that a suitable certificate is not found (error 798) for EAP.
> >>
> >> The certificate was created using openssl (as opposed to a Microsoft
> >> Certificate Services).
> >>
> >> My problem could be
> >> - I imported the certificate into the wrong location
> >> - The certificate is not compatible with Microsoft's schannel
> >> - Something else I can't figure out
> >>
> >> If anyone out there can shed any light on this problem, including
> >> confirming that I imported the certificate into the right place, I
> >> would appreciate it.
> >>
> >> Thanks in advance.
> >>
> >> Kind regards,
> >> Michael.
> >>

> >

>
>

Reply With Quote
Sponsored Links
Reply


Thread Tools
Display Modes


Similar Threads
Thread Thread Starter Forum Replies Last Post
Certificates Won't appear George Windows Vista 3 10-10-2007 01:00 AM
Certificates Leena Windows Vista 1 08-27-2007 10:24 PM
DVD and Security Certificates Song Tae-Hyun Windows Vista 3 07-26-2007 08:06 AM
L2TP vpn connection setup on Vista PhilD Windows Vista 1 06-18-2007 02:12 PM
Unremovable Certificates twiddlebee Windows Vista 1 05-31-2007 02:29 AM


All times are GMT. The time now is 08:11 AM.


Powered by vBulletin® Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0
© 2004 - 2007 Web-S-Sense Pty. Ltd. Usenet and forums posts © their respective authors.
Ad Management by RedTyger