HELP....smart card certificate was not trusted - logon denied !

barabba72_at_hotmail.com
Date: 07/27/05


Date: 27 Jul 2005 08:51:24 -0700

Hi all,

I have a particular user who cannot logon using his smart card. He was
able to use it until yesterday.
The terminal server says that "the smart card certificate used for
authentication was not trusted".

Other users have no problems in logging on to the domain using smart
cards.

I checked the user's published certificate and it's ok, still valid.
the CRL distribution point is also fine and still valid. I already
checked Microsoft Knowledge Base 281245.

Windows 2000 domain - PKI,
Windows 2003 Terminal Server
Windows XPE Thin Clients in workgroup
ActivCard Gold 2.3.1

Anyone has an idea ?
Thank you very much for your help.



Relevant Pages

  • Re: HELP....smart card certificate was not trusted - logon denied !
    ... > I have a particular user who cannot logon using his smart card. ... > I checked the user's published certificate and it's ok, ... > Windows 2003 Terminal Server ...
    (microsoft.public.win2000.security)
  • Application using smart cards
    ... I have a Terminal Server on Windows 2003. ... I had an idea that I put the smart card reader directly on the server. ...
    (microsoft.public.windows.terminal_services)
  • Re: Smart card logon & remote desktop
    ... universal adoption of Windows Vista and Windows ... I am with Slav in suggesting that writing your own GINA is ... I can successfully login using my smart card, ... station does not become locked whatever the state of the "smart card ...
    (microsoft.public.security)
  • RE: Problems enabling smart card login on windows 2000
    ... Bad Certificate; ... Troubleshooting Windows 2000 PKI Deployment and Smart Card Logon ... | - Installing a Windows 2000 Server as a Domain Controller ...
    (microsoft.public.win2000.security)
  • Re: windows 2003: validation/authentication(802.1x)
    ... > We are testing an Active Directory domain with authentication 802.1x using ... > - the domain is served from Windows Server 2003 whith DHCP, DNS, root CA ... > We configured autoenrollement of certificates to smart card. ...
    (microsoft.public.internet.radius)