Using Server 2003 to sign Sonicwall VPN certificate



I am trying to use my Server 2003 PKI to sign a certificate generated on a
Sonicwall 3.1 network appliance. Sonicwall has a tech note describing
"Gateway_to_Gateway_VPN_with_Certificate", which is a step by step guide to
signing the internally generated certificate on the Sonicwall.

When I try to "Submit new request" on my online issuing CA, I get the
following error:

The request contains no
certificate template information. 0x80094801 (-214687539) Denied by Policy
Module 0x80094801, The request does not contain a certificate template
extension or the CertificateTemplate request attribute.



So far, Sonicwall tech support has deemed that "there is an
incompatibility". Probably true, but not all that useful an answer. :-)

Anyone else out there tried to do this and was successful?

Thanks,

Joe


.



Relevant Pages

  • Re: Using Server 2003 to sign Sonicwall VPN certificate
    ... Sonicwall 3.1 network appliance. ... signing the internally generated certificate on the Sonicwall. ... When I try to "Submit new request" on my online issuing CA, ... The request does not contain a certificate template ...
    (microsoft.public.security)
  • Re: Using Server 2003 to sign Sonicwall VPN certificate
    ... Sonicwall 3.1 network appliance. ... signing the internally generated certificate on the Sonicwall. ... When I try to "Submit new request" on my online issuing CA, ... The request does not contain a certificate template ...
    (microsoft.public.security)
  • Re: Computer and User Certificates Issues
    ... Enrollment of User Certificates using the custom v2 User Certificate Template ... I can NOT request the custom v2 Computer Cert nor the included v1 no ... Concerning permissions, these are the exact permissions I am using now: ...
    (microsoft.public.security)
  • Re: Cannot request computer certificate.
    ... request a computer certificate for about 9 months. ... and verify that you can get a computer/server certificate from it. ... List of NetBt transports currently bound to the Redir ... DNS Host Name: srvr3.domain.com ...
    (microsoft.public.windows.server.security)
  • RE: SIMple SSL question ??
    ... OK - i would also delete a cert request file lying around. ... But a certificate is a pub key + extra info. ... That said - if someone compromises the server he will also find a way to retrieve the private key. ... traffic between the initial web server and the client. ...
    (microsoft.public.dotnet.security)