Using Microsoft VPN with EAP using user certificate with strong key protection

From: Rayees (rayees_at_yahoo.com)
Date: 06/22/05

  • Next message: Secret_Cherokee: "System restore Files"
    Date: 21 Jun 2005 17:08:16 -0700
    
    

    Hi,

    I would like to use Microsoft VPN with the Extensible Authentication
    Protocol (EAP) using a user certificate. I got a certificate using a
    Microsoft Enterprise CA certificate Server. I specified strong key
    protection. When I try to use it in the MS VPN client, the certificate
    doesnt show up. If the strong key protection is not specified, the
    certificate shows up. I found out that the MS VPN client acquires the
    context in the CRYPT_SILENT mode, which means that it cannot popup the
    dialog for the password.

    Can any one at Microsoft or others give me the reason why the
    CryptAcquireContext is done in the CRYPT_SILENT mode?

    There is another CSP which ignores this flag and pops up the password
    prompt. Hence I was requested to find out if this is possible in our
    custom CSP.

    - Rayees


  • Next message: Secret_Cherokee: "System restore Files"

    Relevant Pages

    • Re: VPN Problem, PC not Authenticating with Server
      ... thank you for using Microsoft newsgroup. ... do you mean you have configured L2TP/IPSec VPN ... |> is the VPN server, ... you must install a certificate in the local ...
      (microsoft.public.windows.server.sbs)
    • RE: receive an SSL Certificate error message when you view public
      ... The certificate received from the remote server does not contain the ... > folder from OWA or outlook 2003? ... > Microsoft CSS Online Newsgroup Support ... > This newsgroup only focuses on SBS technical issues. ...
      (microsoft.public.windows.server.sbs)
    • RE: ssl certificate error on public folders
      ... click the Server Certificate button. ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ... Restart the IIS Admin service in the services mmc. ...
      (microsoft.public.windows.server.sbs)
    • Re: Trying to setup Activesync now cant access /exchange or /remote
      ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ... I had a few custom web listeners for some websites. ... |> certificate not being from a valid source, etc. but then once I say yes ...
      (microsoft.public.windows.server.sbs)
    • RE: 500 Internal Server Error
      ... Microsoft CSS Online Newsgroup Support ... |> Do you use self-singed certificate or commercial certificate? ... To resolve the issue, we need to re-create ... |> public domain name you use to access OAM or OWA from the Internet. ...
      (microsoft.public.windows.server.sbs)