Complete removal of all Certificates from Server 2008R2


i migrated 2003r2 server 2008r2 running on new hardware.  in doing migration ias , cert services carried across in order support client's wireless network.

i checked ca (enterprise ca running on new server pdc) , looked operating correctly.

i checked nps network policies, seemed correct

i checked wireless gpo - good

this started go bit pear shaped - when attaching wireless clients, reported not connect.

checked event logs nps , found numerous event id 6273 entries with

logging results: accounting information written local log file.

reason code: 23

reason: error occurred during network policy server use of extensible authentication protocol (eap). check eap log files eap errors.

question 1 - eap log files located?

these errors co-incided system log schannel errors 36888 extremely cryptic description:

the following fatal alert generated: 20. internal error state 960.

i tracked event down , appears related invalid certificate.  became interesting, regenerated certificate same result, tried fix have been successful when certificate problems on 2003 servers, uninstalled cert services, re-started server , re-installed cert services different name (so identify certificates issued original ca).  updated nps , group policies accordingly did not solve issue.  when run mmc certificates plug in still have old certificates.  i tried deleting them when re-run mmc, they're - question 2: how remove old certificates?



Windows Server  >  Security



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Event ID 64,77,1008 Certificates Events Windows Server 2008, 2008R2