Cisco Systems Validate server certificate

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
Validate server certificate Tosh 01-30-06
Posted by Tosh on January 30, 2006, 1:29 am
Please log in for more thread options
I know it's not a strictly cisco-based question and maybe is a dumb one, but
I've got no other place where I can go :-((
In an environment with a wireless supplicant (windows xp native, aegis,
odyssey, windows mobile or others), a cisco ap and a windows 2003 server
with ias and certificate server I'm not able to make it work with the option
"evaluate the server certificate" active, this applies however with both
eap-tls and eap-peap.
If I leave this option unchecked all works fine, if I check the option I see
in the event viewer something like "wrong username or password".
What's going on?
Do I need a computer certificate in order to check the server one?
Tnx,
Tosh.




Posted by Vivek on February 1, 2006, 5:14 pm
Please log in for more thread options
When you selected "Validate Server certificate" the client will only accept
certificates from CA's it trusts.

Hence you need to install the CA's root certificate on the client, if you
want to validate the server certificate.

Unchecking the option will allow any CA's certificate to be used by the
Authentication server.



Similar ThreadsPosted
Validate server certificate January 30, 2006, 1:29 am
validate-checksum Command November 29, 2007, 9:02 am
help with Cisco VPN certificate July 11, 2005, 7:13 pm
Certificate CA/RA assistance October 24, 2005, 11:19 am
SSL Certificate and Vlans January 27, 2006, 9:27 am
PIX PDM Certificate problem February 19, 2006, 10:43 am
Certificate based VPN August 21, 2008, 12:40 pm
VPN using certificate authentication September 10, 2008, 12:18 pm
How To Import A CA Certificate November 25, 2008, 9:39 am
exporting digital certificate December 7, 2005, 3:35 am
Cisco ACS Appliance Certificate May 14, 2007, 8:43 am
Cisco PIX Certificate out of date September 21, 2007, 6:11 am
Retrieve x.509 certificate from Router January 17, 2008, 12:26 pm
Re: importing key and certificate into cisco 1811 August 30, 2006, 1:41 pm
importing key and certificate into cisco 1811 August 29, 2006, 11:17 am