Just posting this as a reminder to myself for future reference:
Follow this process for both the client AND the vpn server
In the /certsrv webpage, make and Advanced Request for a certificate using a
form. Select IPSec as the certificate type and tick the box for "Store
Certificate in local computer certificate store".
Install the issued certificates via the browser interface
Go back to the /certsrv home page now download and open the CA certificate,
then click Install but instead of allowing to be installed automatically
select to "Place all certificates in the following store". Click Browse,
then tick the "Show physical stores". Place the certificate in the "Local
Computer" store in the "Trusted Root Certification Authorites" container.
|