cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
360
Views
0
Helpful
1
Replies

PPTP with Windows 2000 CA

anar
Level 1
Level 1

Hello,

I want to configure PIX to authenticate pptp users with digital certificates using Microsoft Windows 2000 Certificate Server ver.1 and IIS ver. 4.0

hostname host

domain-name domain.com

ca generate rsa key 512

ca identity abcd 10.1.0.2:/certserv/mscep/mscep.dll

ca configure abcd ra 1 20 crloptional

ca authenticate abcd

ca enroll abcd cisco

After entering the last command, IOS says

that fingerprint will be displayed and after one minute messages

The certificate enrollment request was denied by CA!

The certificate server puts this request

in Failed Attempts Section with "Denied by Security Policy" message.

1 Reply 1

vkapoor5
Level 5
Level 5

It appears that the CA server is unable to issue the certificate to PIX and there could be many reasons. I would suggest you to look into the configs of the CA server. I am not so good at Windows CA server.