Discussion:
error in smartcard logon using ejbca
(too old to reply)
manu
2010-05-17 13:07:45 UTC
Permalink
Hello,
I am getting the error when trying for the smart card logon as the revocatio
status of the smartcard certificate used for authentication could not b
determined.

When i have checked the event viewer in server side,its was like this.

The client certificate for the user MQTESTDOMAIN\manoj is not valid, an
resulted in a failed smartcard logon. Please contact the user for mor
information about the certificate they're attempting to use for smartcard logon
The chain status was : The revocation function was unable to check revocatio
because the revocation server was offline.

Can anybody help in this regard.....
plzzz.............
Paul Adare
2010-05-17 13:18:54 UTC
Permalink
I am getting the error when trying for the smart card logon as the revocation
status of the smartcard certificate used for authentication could not be
determined.
When i have checked the event viewer in server side,its was like this.
The client certificate for the user MQTESTDOMAIN\manoj is not valid, and
resulted in a failed smartcard logon. Please contact the user for more
information about the certificate they're attempting to use for smartcard logon.
The chain status was : The revocation function was unable to check revocation
because the revocation server was offline.
Can anybody help in this regard.....
The error message means that the domain controller can't retrieve the
Certificate Revocation list to verify that the smart card logon certificate
has not been revoked.

You should check this KB article - http://support.microsoft.com/kb/281245

But more importantly you should find a forum that deals with EJBCA support
issues, as your problem is not with a Microsoft product.
--
Paul Adare
MVP - Identity Lifecycle Manager
http://www.identit.ca
Loading...