|
Posted by Brian Komar \(MVP\) on April 30, 2008, 2:06 am
Please log in for more thread options
Some questions:
1) What SKU are you using of Windows Server 2008. The CA must be running on
Enterprise Edition to enable v2 or v3 certificate templates.
2) Not sure what is happening on that one
Can yhou provide more details on how you are performing the request?
Brian
> Hi all,
> I am trying to enroll some smart cards with the following
> setup
>
> Reader - Gemalto PC Twin USB (Old Name = Gempc twin usb)
> Cards - Gemalto Classic TPC IS White PVC (Old name = GemSafeXpresso
> 32K)
>
> CA - Windows 2008 Enterprise Root CA
> Enrollment station - Vista SP1
>
> th intent is to use these cards for remote access via TSGateway.
>
> Problem 1 - When trying to create another certificate template by
> duplicating the "smart card logon" template, that template is not
> available from the enrollment station. I have modified the issuance
> requirements as per one of the technet articles below, but with no
> sucess.
>
> Problem 2 - When i try to issue from the standard "smart card logon",
> i am prompted to insert my smartcard, however the certificate goes
> straight into the personal store and does not prompt me for a PIN.
>
> The gemalto troublshooting tools seem to indicate that my reader and
> smartcard are all good.
>
> I've been looking the the following articles (some of which are geared
> towards win 2003)
>
>
http://207.46.196.114/windowsserver/en/library/99827b56-216a-475b-a7e9-84c8d4c749de1033.mspx?mfr=true
>
http://technet2.microsoft.com/windowsserver/en/library/5229033e-232b-4f91-9f86-0cbbd7cfc5a81033.mspx?mfr=true
> http://support.microsoft.com/kb/313629
> http://support.microsoft.com/kb/922706
>
> Can anyone assist ?
|