Smart card enrollment issues



Hi all,
I am trying to enroll some smart cards with the following
setup

Reader - Gemalto PC Twin USB (Old Name = Gempc twin usb)
Cards - Gemalto Classic TPC IS White PVC (Old name = GemSafeXpresso
32K)

CA - Windows 2008 Enterprise Root CA
Enrollment station - Vista SP1

th intent is to use these cards for remote access via TSGateway.

Problem 1 - When trying to create another certificate template by
duplicating the "smart card logon" template, that template is not
available from the enrollment station. I have modified the issuance
requirements as per one of the technet articles below, but with no
sucess.

Problem 2 - When i try to issue from the standard "smart card logon",
i am prompted to insert my smartcard, however the certificate goes
straight into the personal store and does not prompt me for a PIN.

The gemalto troublshooting tools seem to indicate that my reader and
smartcard are all good.

I've been looking the the following articles (some of which are geared
towards win 2003)

http://207.46.196.114/windowsserver/en/library/99827b56-216a-475b-a7e9-84c8d4c749de1033.mspx?mfr=true
http://technet2.microsoft.com/windowsserver/en/library/5229033e-232b-4f91-9f86-0cbbd7cfc5a81033.mspx?mfr=true
http://support.microsoft.com/kb/313629
http://support.microsoft.com/kb/922706

Can anyone assist ?
.



Relevant Pages