Cannot connect using L2TP IPSec

G

Guest

I have setup a vpn connection to my work via pptp and this connects and works just fine. When I try to use the L2TP IPSec to connect I get error 792: The L2TP connection attempt failed because security negotiation timed out. I have imported a digital certificate from the server and installed it. Everything looks good with the certificate but I cannot connect to server. Any suggestions on what the problem might be and how do I correct the problem? Thanks
 
S

Sharoon Shetty K [MSFT]

You might want to look at the following KB articles:
http://support.microsoft.com/default.aspx?scid=kb;EN-US;247231
http://support.microsoft.com/default.aspx?scid=kb;EN-US;253498

--

Thanks
Sharoon
(e-mail address removed)

This posting is provided "AS IS" with no warranties, and confers no rights.

KDN said:
I have setup a vpn connection to my work via pptp and this connects and
works just fine. When I try to use the L2TP IPSec to connect I get error
792: The L2TP connection attempt failed because security negotiation timed
out. I have imported a digital certificate from the server and installed it.
Everything looks good with the certificate but I cannot connect to server.
Any suggestions on what the problem might be and how do I correct the
problem? Thanks
 
S

Sharoon Shetty K [MSFT]

The client needs the root certificate that the server's certificate chains
to. The server needs the root certificate that the client's certificate
chains to. If you are using an enterprise CA, the
root certificate should be automatically propagated through group policy.

Use certmgr.msc to check and make sure that the certificates exist
appropriately before trying to set up the connection.

As you mentioned that there isn't any problems with your certificates, in
case you are using NAT-T, you would have to download the latest update at
http://support.microsoft.com/default.aspx?scid=kb;en-us;818043

--

Thanks
Sharoon
(e-mail address removed)

This posting is provided "AS IS" with no warranties, and confers no rights.

KDN said:
I have already downloaded and installed certificate from work server. The
certificate installed and said This certificate is ok. When I try to connect
it takes a while before comming back with error 792. Any other suggestions.
I read the other two articles you said to check out and everything appears
to ok at remote end.
 
G

Guest

Error # 798: A certificate could not be found that can be used with this Extensible Authentication Protocol. I am now receiving this error. I checked the certificate and it says certificate ok. I am not sure if this problem is at my end (Remote) or on corporate server end. I am going thru a Mitel Linux 6000 Server at corporate location. Any Ideas?
 
P

Priya Raghavan [MSFT]

This looks like you are trying to go for EAP authentication. Do you have
client auth certificates in your Current User Store ?
For L2TP , you need machine certs, for EAP you need user certs.

Thanks,
Priya.

This posting is provided "AS IS" with no warranties, and confers no rights.

KDN said:
Error # 798: A certificate could not be found that can be used with this
Extensible Authentication Protocol. I am now receiving this error. I checked
the certificate and it says certificate ok. I am not sure if this problem is
at my end (Remote) or on corporate server end. I am going thru a Mitel Linux
6000 Server at corporate location. Any Ideas?
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top