Re: two CA certificates for IPSec or something...

From: Brian Komar [MVP] (bkomar_at_nospam.identit.ca)
Date: 09/17/05


Date: Sat, 17 Sep 2005 16:44:41 -0500

In article <e5oRO35uFHA.1560@TK2MSFTNGP09.phx.gbl>, "Ondrej Sevecek"
<ondra at my_surname dot com> says...
> > You could use two certificate templates to accomplish this, but if you
> > are applying different IPSec filters, the authentication can only
> > indicate *which* root CA the chain is rooted.
>
> .... and when I would use two templates, how to distinguish them in the
> filter rules?
>
>
> O.
>
>
>
>
This is the issue, the certificate templates would still chain to CAs
that chain to the same root.
Is there any other criteria that you could use, other than the
authentication to isolate?
Brian



Relevant Pages

  • Re: two CA certificates for IPSec or something...
    ... > You could use two certificate templates to accomplish this, ... > are applying different IPSec filters, the authentication can only ...
    (microsoft.public.windows.server.security)
  • Missiong "wireless authentication" certificate template
    ... I'm working through Sam Salhi's presentation " Using Internet Authentication ... templates and it includes two important certificate templates: ... RAS and IAS Server Authentication ... the Wireless Authentication certificate template. ...
    (microsoft.public.internet.radius)