Complete removal of all Certificates from Server 2008R2
i migrated 2003r2 server 2008r2 running on new hardware. in doing migration ias , cert services carried across in order support client's wireless network.
i checked ca (enterprise ca running on new server pdc) , looked operating correctly.
i checked nps network policies, seemed correct
i checked wireless gpo - good
this started go bit pear shaped - when attaching wireless clients, reported not connect.
checked event logs nps , found numerous event id 6273 entries with
logging results: accounting information written local log file.
reason code: 23
reason: error occurred during network policy server use of extensible authentication protocol (eap). check eap log files eap errors.
question 1 - eap log files located?
these errors co-incided system log schannel errors 36888 extremely cryptic description:
the following fatal alert generated: 20. internal error state 960.
i tracked event down , appears related invalid certificate. became interesting, regenerated certificate same result, tried fix have been successful when certificate problems on 2003 servers, uninstalled cert services, re-started server , re-installed cert services different name (so identify certificates issued original ca). updated nps , group policies accordingly did not solve issue. when run mmc certificates plug in still have old certificates. i tried deleting them when re-run mmc, they're - question 2: how remove old certificates?
Windows Server > Security
Comments
Post a Comment