Quantcast
Channel: Forefront Edge Security – DirectAccess, UAG and IAG フォーラム
Viewing all articles
Browse latest Browse all 1485

IPsec: Not Working after SHA 256 auto enrollment

$
0
0

Hello All,

Recently came across an IPsec error in the Direct Access Operations Status page after both direct access servers auto renewed themselves from SHA1 to SHA2.

The following criteria has been met:

New SHA256 cert is not expired

It does have a private key

Configured for Client / Server authentication

Is chained to configured root/indeterminate cert

CRL is accessible

SSL certificate for the IP-HTTPS listener is also purchased through a public CA therefore eliminating CRL issues.

Thanks in advance for any assistance that may be provided.


Viewing all articles
Browse latest Browse all 1485

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>