L2TP/IPsec with certificate connection without joining a doma

alek 21 Reputation points
2020-12-30T08:55:28.733+00:00

Hi dear
I need to Configure a vpn server with certificate authentication. ca-server is standalone. an all machine not join any domain and there are workstation.i can't connect vpn-client to vpn-server with L2TP/IPSEC and certificate but no problem when joined to domain.
is any soloution for L2TP/IPsec with certificate connection without joining a domain ?
thanks

Windows Server Management
Windows Server Management
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Management: The act or process of organizing, handling, directing or controlling something.
424 questions
0 comments No comments
{count} votes

Accepted answer
  1. Candy Luo 12,686 Reputation points Microsoft Vendor
    2020-12-31T07:04:32.173+00:00

    Hi ,

    A valid computer certificate and root certificate are required on both VPN client and VPN server.

    Certificate enrollment for computers that are not domain members cannot be
    done with auto-enrollment. When a computer is joined to a domain, a trust
    is established that allows auto-enrollment to occur without administrator
    intervention. When a computer is not joined to a domain, trust is not
    established and a certificate is not issued.

    So for non-domain member computers you must enroll certificates manually.

    For how to request certificate from a non-domain computer, you can refer to the following link:

    https://social.technet.microsoft.com/Forums/ie/en-US/098f858a-3e89-48d2-828e-274487033f6b/how-to-request-certificate-from-a-nondomain-computer?forum=winserversecurity

    Best Regards,

    Candy

    --------------------------------------------------------------

    If the Answer is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    2 people found this answer helpful.

0 additional answers

Sort by: Most helpful