sky_99lx 发表于 2015-8-15 07:51:59

SSL VPN使用radius+Windows CA认证

CERT_API: Authenticate session 0x040c46b7, non-blocking cb=0x08e84230
CERT API thread wakes up!
CERT_API: process msg cmd=0, session=0x040c46b7
CERT_API: Async locked for session 0x040c46b7

CRYPTO_PKI: Checking to see if an identical cert is
already in the database...

CRYPTO_PKI: looking for cert in handle=0xbb7b8f04, digest=
2c 13 44 4d 82 db 5b 7f 0c 92 17 db 64 d3 45 7d    |,.DM..[....d.E}

CRYPTO_PKI: Cert record not found, returning E_NOT_FOUND
CRYPTO_PKI: Cert not found in database.

CRYPTO_PKI: Looking for suitable trustpoints...

CRYPTO_PKI: Storage context locked by thread CERT API

CRYPTO_PKI: Found a suitable authenticated trustpoint TPoint0.

CRYPTO_PKI(make trustedCerts list)CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.2
CRYPTO_PKI:check_key_usage:Key Usage check OK

CRYPTO_PKI: Certificate validation: Successful, status: 0. Attempting to retrieve revocation status if necessary

CRYPTO_PKI:Certificate validated. serial number: 11E0159C000000000010, subject name:cn=A1,ou=ALPSUsers,dc=alpsgroup,dc=ad,dc=local.

CRYPTO_PKI: Storage context released by thread CERT API

CRYPTO_PKI: Certificate validated without revocation check
CERT_API: calling user callback=0x08e84230 with status=0
CERT_API: Close session 0x040c46b7 asynchronously
CERT_API: Async unlocked for session 0x040c46b7
CERT_API: process msg cmd=1, session=0x040c46b7
CERT_API: Async locked for session 0x040c46b7
CERT_API: Async unlocked for session 0x040c46b7
CERT API thread sleeps!
Certificate mapping found for webvpn group remotevpn
CERT_API: Authenticate session 0x0449bfb7, non-blocking cb=0x08e84230
CERT API thread wakes up!
CERT_API: process msg cmd=0, session=0x0449bfb7
CERT_API: Async locked for session 0x0449bfb7

CRYPTO_PKI: Checking to see if an identical cert is
already in the database...

CRYPTO_PKI: looking for cert in handle=0xbb7b8f04, digest=
2c 13 44 4d 82 db 5b 7f 0c 92 17 db 64 d3 45 7d    |,.DM..[....d.E}

CRYPTO_PKI: Cert record not found, returning E_NOT_FOUND
CRYPTO_PKI: Cert not found in database.

CRYPTO_PKI: Looking for suitable trustpoints...

CRYPTO_PKI: Storage context locked by thread CERT API

CRYPTO_PKI: Found a suitable authenticated trustpoint TPoint0.

CRYPTO_PKI(make trustedCerts list)CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.2
CRYPTO_PKI:check_key_usage:Key Usage check OK

CRYPTO_PKI: Certificate validation: Successful, status: 0. Attempting to retrieve revocation status if necessary

CRYPTO_PKI:Certificate validated. serial number: 11E0159C000000000010, subject name:cn=A1,ou=ALPSUsers,dc=alpsgroup,dc=ad,dc=local.

CRYPTO_PKI: Storage context released by thread CERT API

CRYPTO_PKI: Certificate validated without revocation check
CERT_API: calling user callback=0x08e84230 with status=0
CERT_API: Close session 0x0449bfb7 asynchronously
CERT_API: Async unlocked for session 0x0449bfb7
CERT_API: process msg cmd=1, session=0x0449bfb7
CERT_API: Async locked for session 0x0449bfb7
CERT_API: Async unlocked for session 0x0449bfb7
CERT API thread sleeps!
Certificate mapping found for webvpn group remotevpn
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_server_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_port_forward_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_server_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_port_forward_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_server_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_port_forward_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_port_forward_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_server_db_first
webvpn_file_encoding.c:webvpn_get_file_encoding_db_first
webvpn_db.c:webvpn_get_port_forward_db_first
CERT_API: Authenticate session 0x049a9325, non-blocking cb=0x08e84230
CERT API thread wakes up!
CERT_API: process msg cmd=0, session=0x049a9325
CERT_API: Async locked for session 0x049a9325

CRYPTO_PKI: Checking to see if an identical cert is
already in the database...

CRYPTO_PKI: looking for cert in handle=0xbb7b8f04, digest=
2c 13 44 4d 82 db 5b 7f 0c 92 17 db 64 d3 45 7d    |,.DM..[....d.E}

CRYPTO_PKI: Cert record not found, returning E_NOT_FOUND
CRYPTO_PKI: Cert not found in database.

CRYPTO_PKI: Looking for suitable trustpoints...

CRYPTO_PKI: Storage context locked by thread CERT API

CRYPTO_PKI: Found a suitable authenticated trustpoint TPoint0.

CRYPTO_PKI(make trustedCerts list)CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.2
CRYPTO_PKI:check_key_usage:Key Usage check OK

CRYPTO_PKI: Certificate validation: Successful, status: 0. Attempting to retrieve revocation status if necessary

CRYPTO_PKI:Certificate validated. serial number: 11E0159C000000000010, subject name:cn=A1,ou=ALPSUsers,dc=alpsgroup,dc=ad,dc=local.

CRYPTO_PKI: Storage context released by thread CERT API

CRYPTO_PKI: Certificate validated without revocation check
CERT_API: calling user callback=0x08e84230 with status=0
CERT_API: Close session 0x049a9325 asynchronously
CERT_API: Async unlocked for session 0x049a9325
CERT_API: process msg cmd=1, session=0x049a9325
CERT_API: Async locked for session 0x049a9325
CERT_API: Async unlocked for session 0x049a9325
CERT API thread sleeps!
Certificate mapping found for webvpn group remotevpn
CERT_API: Authenticate session 0x04fdce8d, non-blocking cb=0x08e84230
CERT API thread wakes up!
CERT_API: process msg cmd=0, session=0x04fdce8d
CERT_API: Async locked for session 0x04fdce8d

CRYPTO_PKI: Checking to see if an identical cert is
already in the database...

CRYPTO_PKI: looking for cert in handle=0xbb7b8f04, digest=
2c 13 44 4d 82 db 5b 7f 0c 92 17 db 64 d3 45 7d    |,.DM..[....d.E}

CRYPTO_PKI: Cert record not found, returning E_NOT_FOUND
CRYPTO_PKI: Cert not found in database.

CRYPTO_PKI: Looking for suitable trustpoints...

CRYPTO_PKI: Storage context locked by thread CERT API

CRYPTO_PKI: Found a suitable authenticated trustpoint TPoint0.

CRYPTO_PKI(make trustedCerts list)CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.8.2.2, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.1, NOT acceptable
CRYPTO_PKI:check_key_usage: ExtendedKeyUsage OID = 1.3.6.1.5.5.7.3.2
CRYPTO_PKI:check_key_usage:Key Usage check OK

CRYPTO_PKI: Certificate validation: Successful, status: 0. Attempting to retrieve revocation status if necessary

CRYPTO_PKI:Certificate validated. serial number: 11E0159C000000000010, subject name:cn=A1,ou=ALPSUsers,dc=alpsgroup,dc=ad,dc=local.

CRYPTO_PKI: Storage context released by thread CERT API

CRYPTO_PKI: Certificate validated without revocation check
CERT_API: calling user callback=0x08e84230 with status=0
CERT_API: Close session 0x04fdce8d asynchronously
CERT_API: Async unlocked for session 0x04fdce8d
CERT_API: process msg cmd=1, session=0x04fdce8d
CERT_API: Async locked for session 0x04fdce8d
CERT_API: Async unlocked for session 0x04fdce8d
CERT API thread sleeps!
Certificate mapping found for webvpn group remotevpn
Certificate mapping found for webvpn group remotevpn

Radius-CA03(config)#

sky_99lx 发表于 2015-8-15 07:54:27

有没有大侠帮忙看一下

证书认证是什么问题

现在弹出证书页面,然后就是页面出错,无法在线安装客户端

xiaosan9503 发表于 2015-10-31 22:35:08

上级

xiaosan9503 发表于 2015-10-31 22:35:16

哈哈哈哈

relax_lml 发表于 2016-3-17 11:28:05

谢谢共享资料

13318967551 发表于 2016-9-23 22:54:14

{:6_267:}

13318967551 发表于 2016-9-23 22:54:20

{:6_267:}
页: [1]
查看完整版本: SSL VPN使用radius+Windows CA认证