XP client & Server authentication

From: Robin (robin.hartley_at_alcatel.co.nz)
Date: 05/25/05


Date: 24 May 2005 21:20:34 -0700

Hi All,
I currently have XP running the L2TP/IPSec client to a network server.
I'm using X.509 certificates & can connect fine.

The issue I have is how to configure the XP client to check more than
just the signature on the server certificate.
I'm after something like what Cisco call "distinguished name checking"
where it will match fields in the certificate.

The problem is that over WiFi it's trivial to do a "man in the middle"
attack without verifying the server certificate. Any help appreciated.

Regards,
Robin



Relevant Pages

  • RPC over HTTP, Microsoft solution
    ... Exchange Server 2003 RPC over HTTP Deployment Scenarios ... Place a check in the box next to 'Certificate Services' and click 'Yes' ...
    (microsoft.public.exchange.setup)
  • Re: OWA 2003 w/ Smart Card Authentication.
    ... Exchange 2003 server via ActivSync. ... the IIS certificate. ... Whether or not authentication will succeed is completely dictated by ... Server's SSL certificate must be configured on root of v-server via ...
    (microsoft.public.exchange.connectivity)
  • Re: Configuring SBS2003 for OWA and RWW
    ... And make sure certificate will not be ... On the Connection Type page, click Broadband, and then click Next. ... next to Preferred DNS server and next to ... If you are using ISA, please go to ISA management console, and navigate ...
    (microsoft.public.windows.server.sbs)
  • Re: Configuring LDAP on Entourage 2004 OS X
    ... Microsoft CSS Online Newsgroup Support ... does not work with a self signed SSL certificate OR with the SSL ... configure the System to allow OMA and "Server ActiveSync" access from the ... Configuring Exchange Server 2003 for Client Access. ...
    (microsoft.public.windows.server.sbs)
  • SUS clients not updating
    ... I have been using SUS on a network server for several ... I use GPO to push out updates/patches to ... about 60 workstations that are members of an Active ... certificate "NO LIABLITY ACCEPTED" from days. ...
    (microsoft.public.windowsupdate)