cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1086
Views
1
Helpful
4
Replies

Windows 7 cannot present a valid cert when an invalid cert is present in the store

umahar
Cisco Employee
Cisco Employee

Hi,

I testing machine authentication using EAP-TLS and certificate expiry. It seems that when an invalid cert is present in the machine store the machine is failing authentication and cannot present even the valid certificate.

This has been described by Microsoft at

https://support.microsoft.com/en-us/help/2769121/802.1x-authentication-fails-on-a-windows-7-based-or-windows-2008-r2-based-computer-that-has-multiple-certificates

Has anyone faced the same issue.

1 Accepted Solution

Accepted Solutions

umahar
Cisco Employee
Cisco Employee

It din't help at first but after running Windows update multiple times it worked on Wireless but Wired still gave problems.

View solution in original post

4 Replies 4

hslai
Cisco Employee
Cisco Employee

Is the Microsoft hot fix not helping??

umahar
Cisco Employee
Cisco Employee

It din't help at first but after running Windows update multiple times it worked on Wireless but Wired still gave problems.

hslai
Cisco Employee
Cisco Employee

Thanks for the update. I hope you opened a ticket with Microsoft.

Were the certificates issued by a Microsoft Windows Enterprise CA and then renew using the cert renewal wizard? I am wondering why it did not clean up the expired certificates.

umahar
Cisco Employee
Cisco Employee

This was part of testing for BYOD environment so Microsoft Windows Enterprise CA was not involved.

ISE NSP does not clean up the expired certificate.