cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
410
Views
0
Helpful
1
Replies

Remote Access and MS Certificate Authentication

saquib.mkhan
Level 1
Level 1

Hi,

I have an ASA infrastructure where we need to authenticate the client via a MS cert and AD credentials. I have followed most of the documents from the website, but getting "CRYPTO_PKI: Cert record not found, returning E_NOT_FOUND" errors. Would somebody please be able to send me a working config from the ASA ?

Secondly, when turning on both AAA and Certificate authentication, I get " invalid certificate on the webvpn login page" when trying to login with AD credentials.

Appreciated

1 Reply 1

drolemc
Level 6
Level 6

I think the error indicates an invalid signature error. This means that the CA certificate in trust point could not be used to validate the client certificate.

You should ensure that the client certificate was issued by this CA and can be used to verify the signature on it.