Follow this process for both the client AND the vpn server
In the /certsrv webpage, make and Advanced Request for a certificate using a
form. Select IPSec as the certificate type and tick the box for "Store
Certificate in local computer certificate store".
Install the issued certificates via the browser interface
Go back to the /certsrv home page now download and open the CA certificate,
then click Install but instead of allowing to be installed automatically
select to "Place all certificates in the following store". Click Browse,
then tick the "Show physical stores". Place the certificate in the "Local
Computer" store in the "Trusted Root Certification Authorites" container.
"Luke Edson" <(E-Mail Removed)> wrote in message
news:00c601c3b901$2689b250$(E-Mail Removed)...
> We have Windows 2003 as our RRAS server, & Windows XP SP1
> as the client.
>
> PPTP VPN connects perfectly, L2TP VPN with a shared key
> connects perfectly, but when we try to connect without
> the shared key, we get the following error: "Error 781:
> The connection requires a certificate, and no valid
> certificate was found."
>
> We have a CA installed as a Stand alone Root, &
> sucessfully issue certificates to the client PCs through
> the /certsrv website on the CA, but it seems that the
> L2TP VPN client function can't find the certificates in
> the personal store of the client PCs.
>
> Any suggestions?
>
> I'm attempting to get it to work internally, there's no
> firewall in the middle, so that can't be the problem. The
> client PCs I'm testing are not joined to the Domain, &
> that's the way I have to get it going, I can pass out
> certificates, but the PCs are not to be required to join
> the Domain.
>
> Thanks for your help,
|