Networking Forums

Networking Forums > Computer Networking > Windows Networking > Does a EAP-based VPN require "Active Directory"?

Reply
Thread Tools Display Modes

Does a EAP-based VPN require "Active Directory"?

 
 
Thomas D.
Guest
Posts: n/a

 
      01-22-2007, 09:32 AM
Hello all,

we setup a "Microsoft Windows 2003 Server ENT". It is a single machine,
without active directory and it isn't a domain member.
We installed a CA using certification services and IIS for web enrollment.

A VPN client will connect to this server, using a PPTP connection and
request a certificate browsing http://servername/certsrv.
We accept these request on serverside using ca-snapin and install this
certificate. We also installed the ROOT-CA cert on client machine.

Now, we changed the VPN connection from PPTP to LT2P and to EAP. But now,
everyclient tells me: "Error 798: A certificate could not be found that can
be used with this Extensible Authentication Protocol."

This leads me to the question, because in my opinion everything is okay (the
request certificate on client side will be listed in the own-computer
certs...), that a EAP-based VPN requires "Active Directory"... am I right or
can you help me out?

Regards,
 
Reply With Quote
 
 
 
 
Thomas D.
Guest
Posts: n/a

 
      01-26-2007, 11:38 AM
"Thomas D." wrote:
> This leads me to the question, because in my opinion everything is okay (the
> request certificate on client side will be listed in the own-computer
> certs...), that a EAP-based VPN requires "Active Directory"... am I right or
> can you help me out?


I was right. An EAP-based VPN requires an "Active Directory". Without, you
cannot create computer certs and without these certs, you cannot create user
certs for EAP
 
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
[Fwd: SPEWS DOLTS "SneakyP", "Kevin!:?)", "WindsorFox" SPAM braodbandnewsgroup] !:?) Broadband 0 11-30-2005 01:04 AM
Re: SPEWS SLIMES "WindsorFox", "Kevin-!:?)", "Spin Dryer" get the cold shoulder at broadband ng! SneakyP Broadband 0 11-29-2005 10:46 PM
Attention Plus.net Re: SPEWS DOLTS "WindsorFox", "Kevin-!:?)", "SpinDryer" SPAM broadband newsgroup !:?) Broadband 0 11-28-2005 04:28 AM
Attention Plus.Net Re: SPEWS DOLTS "WindsorFox", "Kevin-!:?)", "SpinDryer" SPAM braodband newsgroup !:?) Broadband 0 11-28-2005 03:03 AM
how to enable "apply static route" for some users in "Dial in" tab of Active Directory on Windows 2003 HuyNguyen Windows Networking 4 12-11-2004 12:50 AM



1 2 3 4 5 6 7 8 9 10 11