VPN: Validate Server Certificate Message
Hi,I have a VPN configured on our network using ISA 2004 and IAS as our radius servers. Enterprise root certificate is installed on the network.IAS is configured with a VPN policy using Smart Card Authentication as our EAP Method. MS-CHAP v2 is also checked. Server certificate is selected and configured.Problem:Every time I try to connect using IPSEC VPN a message always appears before full connection is established."The Root Certificate Authority for the server's certificate is: .......servername......If this is the correct certificate, click OK to connect and you will not see this message again. Click CANCEL to drop connection"NOTES:- If I click OK.. connection is made and everything is fine... BUT everytime I try to connect this messages still appears.- Trusted Root Certificate of the server is installed on the local machine making the connection.- When viewing Server Certificate, server certificate status is "OK" and accepted.- Problem occured ever since Enterprise Root Certificate server expired.. however new one was issued and is not expired.QUESTION:Why am I getting this error even though the Server Certificate is in the Trusted Root Certificate Store?Thanks
September 10th, 2008 10:19pm
The enterprise root certificate expired? Did you redeploy certs after the expiration.- Your user cert- The IPSec certs on your machine and the VPN server- The RADIUS serverBrian
Free Windows Admin Tool Kit Click here and download it now
September 12th, 2008 2:44am


