Theldron Posted November 17, 2023 Posted November 17, 2023 Hi all Hope you are well. One of the schools I work for lost access to their main devices wireless. After some looking around I noticed the NPS server certificate had expired. I have renewed it by right click - request new certificate with same key. But they are still not able to connect. Do I need to distribute the new key to the clients, if so how do I do that? Is that in GPO or AD? Thanks
howartp Posted November 17, 2023 Posted November 17, 2023 GPO if it's Windows devices on your domain. Apple MDM / admin.google.com if they're iPads/Chromebooks. 1
Theldron Posted November 17, 2023 Author Posted November 17, 2023 Thanks, yeah they are windows machines. I can see anywhere in GPO that the previous certs were distributed. They have a certificate authority setup on one of the DCs. But can't see how it is distributed.
howartp Posted November 17, 2023 Posted November 17, 2023 Computer Config > Policies > Windows Settings > Security Settings > Public Key Policies > Trusted Root Certification Authorities That's where I add our other certs, though we don't use domain devices on wifi so we don't have the specific issue you're dealing with. 1
lmrogers Posted November 17, 2023 Posted November 17, 2023 I had something similar a while back and had to delete the expired certificate from the NPS server before the clients would connect and the correct cert would be used. 1
Theldron Posted November 17, 2023 Author Posted November 17, 2023 Thanks. I recreated the new certificate, as wasn't 100% sure I had told it to request new certificate with same key. Added that to the NPS policy and it came back up. Thanks for the replies all.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now