Certificate for IP-HTTPS in DirectAccess Role


i setting directaccess server our child domain.

i first tried using self-signed certificate. showed ip-https ok ipsec not configured because certificate not trusted.

i tried generating certificate request iis , generating certificate our standalone certification server. did not work because subject field of certificate did not contain fqdn of directaccess server. contained company , location information well.

i created certificate manually using certreq on our certification server. certificate loaded did not have private key attached.

trying generate private key command "certutil -repairstore "serial number of certificate" generated prompt smartcard though not use smartcards.

trying generate new certificate request within certificate snap-in on directaccess server fails permission denied error because domain admin , not enterprise admin.

can directaccess installed enterprise admins?

is else try? suggestions?

thanks

charlotte


charlotte mcclellan

hi charlotte,

thanks posting on technet forum.

>>can directaccess installed enterprise admins?

i have test in environment using domain admin accounts, found install direct access .

>>is else try? suggestions?

the following link helps configure certificates ipsec:

https://technet.microsoft.com/en-us/library/jj134204.aspx#configcas

>>i tried generating certificate request iis , generating certificate our standalone certification server

you try add standalone ca server same domain da.

best regards,


andy_pan



Windows Server  >  Windows Server General Forum



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...