cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

Cisco anyconnect 3.1 - Certificate Validation Failure.

krs4keshara
Level 1
Level 1

When i try to start a SSL VPN connection to the ASA(8.4) with anyconnect 3.1, Cisco anyconnect receives a message saying "No Valid Certificates Available for Authentication".

Prior to the test;

     On the ASA, i have obtain CA certificate and its identity certificate. (Both certificates obtain from windows 2008 CA).

          * ASA identity certificate's have EKU attribute = Server Authentication,   Key Usage = Digital Signature, Key Encipherment.

     On the PC in which anyconnect installed, i have obtain User Certificate (this User certificate also obtain from the same windows 2008 CA)

          * Prior to obtaining User certificate from the windows2008 CA, ASA acts as a SCEP proxy onbehalf of the client PC.

          * User Certificate's has EKU attribute = Client Authentication.

As in the ASDM Logs, it almost work.

     asdm log.png

In days of troubleshooting, i still could not find the cause of this problem. Error message as appeared on anyconnect;

     anyconnect3.1 error.PNG

Is there anyone could help.???

Keshara from Sri Lanka.

Who Me Too'd this topic