specify preferred certificate for L2TP VPN
hello,
my notebooks need have 2 ipsec certificates, 1 ipsec intermediat usage , other ipsec endpoint. problem here is, vpn gateway requires certificate ipsec enpoint used l2tp ipsec authentication , not allow other. how tell machines use ipsec enpoint certificate l2tp vpn exclusively? (there still way of doing using 2 different cas, rather able solve simpler way)
ondrej.
if 2 or more ipsec certificates issued same ca client subsystem select conformant , valid certificate ( http://technet.microsoft.com/en-us/library/cc737812(ws.10).aspx ). btw, ipsec endpoint eku deprecated as per rfc 2409 (draft, §3.1.2) , rfc 4945 (§5.1.3.12). there never choice select certificate ipsec connection don't believe if possible single ca (when 2 or more ipsec certificates issued same ca).
weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
Windows Server > Security
Comments
Post a Comment