Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Yamada_Takahiro3
New Contributor

FortiClient IPSec VPN w/ Machine Certificate issuee

<Summary>

can not connect IPSec VPN w/ machine certificate in windows cert Store

 

<ENV>

windows 8 (ver 6.3, build 9600) x64 japanese

FortiClient 5.4.0.0780 x64(only VPN Feature installed)

FortiWIFI-60D w/ 5.2.3(In fact, this is no matter.)

 

<Detail>

Success pattern

Local Admin user logged-on and Connect w/ user certificate in windows cert store

Local Admin user logged-on and Connect w/ machine certificate in FortiClient Certificate store(Local Cert upload in Settings)

Connect w/ machine certificate in windows cert store before windows log on (VPN before login in setthings)

 

Fail pattern

Local Admin user logged-on and Connect w/ machine certificate in windows cert store

Forticlient Debug log say that;

   no remote configulation found.

   no configulation found for <gateway>

   failed to begin ipsec sa negotiation

and windows security eventlog say;

  source microsoft windows security auditing

  provider software key storage provider

  ID 5061

  desc operation fail..(show in Japanese)

 

I think this is Privilege problem of cert store

 

Does anyone have workaround?

 

 

 

 

 

0 REPLIES 0
Labels
Top Kudoed Authors