Tom's Hardware > Forum > Wireless Networking > Wireless General Discussions > Smart Card Certificate Logon and Smart Card Wireless EAP-TLS

Smart Card Certificate Logon and Smart Card Wireless EAP-TLS

Forum Wireless Networking : Wireless General Discussions - Smart Card Certificate Logon and Smart Card Wireless EAP-TLS

Tom's Hardware: Over 1.4 million members in 6 different countries available to answer all your high-tech questions. Sign up now! Its free!
Word :    Username :           
 

Archived from groups: microsoft.public.windows.networking.wireless (More info?)

 

Hi all,

I have post this problem before. Since there is no reply, I will try to
re-phrase my problem.

Here is the question:

Is there anybody out there succesfully implement Smart Card Certificate
Logon and Smart Card Wireless EAP-TLS together ?

The Wireless EAP-TLS do not allow 'Smart Card Logon' on the Extended Key
Usage.
When Smart Card Logon appears on the Certificate EKU, the Wireless EAP-TLS
will failed.

So I assume we cannot use the same Certificate for the Certificate Logon and
Wireless EAP-TLS.
And I can create two different certificates for this two process.

BUT here is the problem ....

Both Smart Card Certificate Logon and Smart Card Wireless EAP-TLS call my
CSP to query for default container.

Since now I used two different certificates for this two process, how can I
know which certificate I shall used when there is a query for default
continer ?
If I used the Certificate with 'Smart Card Logon' on the EKU, the Wireless
EAP-TLS will failed.
If I used the Certificate without 'Smart Card Logon' on the EKU, the
Certificate Logon will failed.

Can anybody from Microsoft clarify this ?
Have Microsoft test this scenario before ?

Thanks for any help.....

Rudy

Sponsored Links
Register or log in to remove.
Tom's Hardware > Forum > Wireless Networking > Wireless General Discussions > Smart Card Certificate Logon and Smart Card Wireless EAP-TLS
Go to:

There are 1213 identified and unidentified users. To see the list of identified users, Click here.

Please mind

You are about to answer a thread that has been inactive for more than 6 months.
If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.

Add a reply Cancel
Sponsored links
  • Ask the community now
  • Publish
Ad
They won a badge
Join us in greeting them