Windows 10: NPS with SSL Certificates failing to authenticate after CA move

Discus and support NPS with SSL Certificates failing to authenticate after CA move in Windows 10 Software and Apps to solve the problem; For years we have been using Windows NPS with Cisco Switch radius to authenticate Ethernet NIC with Workstations using Certificates issued by WIN Root... Discussion in 'Windows 10 Software and Apps' started by Davor 1, Sep 6, 2022.

  1. Davor 1 Win User

    NPS with SSL Certificates failing to authenticate after CA move


    For years we have been using Windows NPS with Cisco Switch radius to authenticate Ethernet NIC with Workstations using Certificates issued by WIN Root CARecently we moved the Root CA from Win 2012 to Win 2019, the rest of the components didnt change.I am able to get the new certificates from the CA, but my NIC authentication now fails.The changes we made is update the Root CA hash to use SHA256 instead of the SHA1I uploaded the new root cert to GPO which got pushed to all the workstations.I also updated the GPO for the Wired profile to include the new Root CA.I can confirm the workstation side

    :)
     
    Davor 1, Sep 6, 2022
    #1

  2. 6680 CA certificates

    The CA certificate for SSL connections that I use is untrusted by the phone. How do I add the CA to the list of existing trusted certificates?
     
    hiltonian---01, Sep 6, 2022
    #2
  3. a14karat Win User
    Web Client Authentication via SSL Certificate

    Nope, that did not work.

    I even tried removing the CA certificate and just leaving the client certificate. It still fails on the user authentication.

    I'm going to try going thru the CA-Int-Client route... last ditch effort now.

    If this doesn't work then Win Mobile is useless to me...
     
    a14karat, Sep 6, 2022
    #3
  4. peddabavi Win User

    NPS with SSL Certificates failing to authenticate after CA move

    certificate authentication prompt to a Microsoft NPS Server

    one of my clients face this:

    A couple of our Windows 10 PC's have started to show a prompt to join our secure wireless asking which certificate to present as authentication.

    We have secure wireless network set up using WPA2-enterprise using certificate authentication to a Microsoft NPS Server. We have User certificates set up to automatically enroll on domain PCs. Normally the only certificate in the user store is the user's automatically-created
    domain certificate, but on one of the affected PC's, I see a certificate issued from MS-ORGANIZATION-ACCESS.

    Can you tell me how that certificate got there and how I can prevent Windows 10 from prompting the user for a certificate when joining a wireless network?
     
    peddabavi, Sep 6, 2022
    #4
Thema:

NPS with SSL Certificates failing to authenticate after CA move

Loading...
  1. NPS with SSL Certificates failing to authenticate after CA move - Similar Threads - NPS SSL Certificates

  2. Corrupted SSL Certificates

    in Windows 10 Gaming
    Corrupted SSL Certificates: I moved my Windows 10 Boot M.2 SSD Drive from my laptop to a mini PC. All went well with new drivers and all except the SSL Certificates seems to be messed up. I get hundreds of Event ID 15300 and 15301 warnings every time I boot up. All Google searches say to ignore those ID...
  3. Corrupted SSL Certificates

    in Windows 10 BSOD Crashes and Debugging
    Corrupted SSL Certificates: I moved my Windows 10 Boot M.2 SSD Drive from my laptop to a mini PC. All went well with new drivers and all except the SSL Certificates seems to be messed up. I get hundreds of Event ID 15300 and 15301 warnings every time I boot up. All Google searches say to ignore those ID...
  4. Corrupted SSL Certificates

    in Windows 10 Software and Apps
    Corrupted SSL Certificates: I moved my Windows 10 Boot M.2 SSD Drive from my laptop to a mini PC. All went well with new drivers and all except the SSL Certificates seems to be messed up. I get hundreds of Event ID 15300 and 15301 warnings every time I boot up. All Google searches say to ignore those ID...
  5. Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...

    in Windows 10 Gaming
    Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...: Dear Community,We are implementing the WPA2-Enterprise with 802.1X authentication Microsoft: Protected EAP PEAP from CISCO Meraki AP and Windows NPS as a RADIUS server, with Active Directory acting as a userbase. However, we are not sure what is the certificate from a...
  6. Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...

    in Windows 10 Software and Apps
    Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...: Dear Community,We are implementing the WPA2-Enterprise with 802.1X authentication Microsoft: Protected EAP PEAP from CISCO Meraki AP and Windows NPS as a RADIUS server, with Active Directory acting as a userbase. However, we are not sure what is the certificate from a...
  7. Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...

    in Windows 10 Network and Sharing
    Public CA for Microsoft NPS authentication - WPA2-Enterprise with 802.1X authentication...: Dear Community,We are implementing the WPA2-Enterprise with 802.1X authentication Microsoft: Protected EAP PEAP from CISCO Meraki AP and Windows NPS as a RADIUS server, with Active Directory acting as a userbase. However, we are not sure what is the certificate from a...
  8. How to we generate certificates for 802.1x wired authentication in windows NPS?

    in Windows 10 Gaming
    How to we generate certificates for 802.1x wired authentication in windows NPS?: How to generate the CA, server, and client certificates in the NPS server for 802.1x wired authentication. We need these certificates for our application which supports 802.1x wired authentication. We want our device to get authenticated from NPS Radius, but generating the...
  9. How to we generate certificates for 802.1x wired authentication in windows NPS?

    in Windows 10 Software and Apps
    How to we generate certificates for 802.1x wired authentication in windows NPS?: How to generate the CA, server, and client certificates in the NPS server for 802.1x wired authentication. We need these certificates for our application which supports 802.1x wired authentication. We want our device to get authenticated from NPS Radius, but generating the...
  10. NPS with SSL Certificates failing to authenticate after CA move

    in Windows 10 Gaming
    NPS with SSL Certificates failing to authenticate after CA move: For years we have been using Windows NPS with Cisco Switch radius to authenticate Ethernet NIC with Workstations using Certificates issued by WIN Root CARecently we moved the Root CA from Win 2012 to Win 2019, the rest of the components didnt change.I am able to get the new...