You cannot configure PEAP-TLS authentication when you configure network policies on an NPS computer that is running Windows Server 2008

This article has been archived. It is offered "as is" and will no longer be updated.
Symptoms
You cannot configure Protected Extensible Authentication Protocol-Transport Layer Security (PEAP-TLS) authentication when you configure network policies on a Windows Server 2008-based Network Policy Server (NPS) computer. This problem occurs although you have installed the appropriate server authentication certificate in the Trusted Root Certification Authorities path.

This problem occurs when the NPS computer is a stand-alone server that is not joined to the domain.
Cause
Microsoft is researching this problem and will post more information in this article when the information becomes available.
Workaround
To work around this problem, we recommend that you use Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) authentication.
References
For more information about Windows Server 2008, visit the following Microsoft Web site:
Properties

Article ID: 947717 - Last Review: 01/16/2015 02:46:15 - Revision: 2.0

  • Windows Server 2008 Enterprise
  • Windows Server 2008 Standard
  • kbnosurvey kbarchive kbpolicy kbdigitalcertificates kbclientprotocols kbauthentication kbtshoot kbprb kbbug KB947717
Feedback