republican-creole
Search:  

 
 
   All ForumsHot TopicsGallery






how-to block ads


 
Forums » Tech and Talk » OS and Software » Microsoft Help » SSTP Error: Revocation Server
Search Topic:
Uniqs:
226
Share Topic:
RSS topic:
toggle:
flat / full
normal / watch
Posting:
Post a:
Post a:
[IE] IE8 - Anyone having intermittent failures to load webpages? »
« [Vista] Random BSODs, can't pinpoint cause  
AuthorAll Replies

johnpsph

join:2003-11-16
Saint Louis, MO
·Charter Pipeline

SSTP Error: Revocation Server

I currently have two 2008 boxes on my network. One is running IIS, Active Directory Certificate Services and RRAS. The other machine is a domain controller, DNS Server and DHCP Server. The first machine (running RRAS) has two nics, one is the public nic, with a public IP, the other is private, attached to a switch. When I set up the RRAS box for both NAT and VPN, I am able to browse from the other box (or any client on the network), vpn in (via PPTP ONLY), etc. However, in this configuration, I cannot access web pages on the server running IIS (from the internet). If i attempt to connect using SSTP, i get a general error (806 i believe)

If i change the RRAS setup to VPN only, I can VPN in (again, using PPTP) and can even browse to web pages on the IIS server (from the internet). However, I still get an error when attempting to connect via SSTP:

"the revocation function was unable to check revocation because the revocation server was offline."

If anyone can offer me some guidance, I would really appreciate it. It seems that the biggest hangup is getting SSTP to work, but it sems that routing/NAT somehow interferes with accessing web pages from the internet.

Thanks in advance.


Matt
Take me down to the paradise city
Premium
join:2003-07-20
Jamestown, NC
·North State Commun..

I haven't played with SSTP yet, but here are a few links I have bookmarked for when I do:

How to configure a Secure Socket Tunneling Protocol (SSTP)-based VPN server behind a NAT device in Windows Server 2008

How to deploy SSTP based VPN server behind a NAT router

Remote Access Design Guidelines – Part 5: Where to place RRAS server

I would start with that last link and make sure your environment meets the requirements.

johnpsph

join:2003-11-16
Saint Louis, MO
thanks for the reply. In those regards, my setup is working perfectly. My issues seems to be stemming from the lack of a certificate revocation server (list). Can anyone point me in the right direction as far as setting this up?

johnpsph

join:2003-11-16
Saint Louis, MO
·Charter Pipeline

All right, here's what I intend to try when I get the chance (this evening): when configuring the client machine, it looks like I use the web autoenroll, where I download the CA cert. On the same page, I have the option to download the CRL. I'm hoping that downloading the CRL will resolve this issue. I'll post back with results. The only concern that I have at the moment is that under the details of the CA cert, I do not have an entry "CRL Distribution Points". Any ideas would be great. Thanks
-
Forums » Tech and Talk » OS and Software » Microsoft Help[IE] IE8 - Anyone having intermittent failures to load webpages? »
« [Vista] Random BSODs, can't pinpoint cause  


Saturday, 28-Nov 13:15:06 Terms of Use | Privacy Policy | Hosting by www.nac.net - DSL,Hosting & Co-lo | feedback | contact
over 10 years online! © 1999-2009 dslreports.com.republican-creole
page compression OFF
Most commented news this week
· [122] Time Warner Cable Fires Broadside At Broadcasters
· [112] New AT&T Ad Campaign Hits Back At Verizon
· [96] Apple Joins AT&T Verizon Snark Fest
· [87] New Bill Takes Aim At Higher Verizon ETFs
· [75] TiVo Sees Record Customer Losses
· [70] Verizon CEO: Hulu Will Be Dead Soon
· [69] In-Flight Internet Headed For Bumpy Landing?
· [62] Thanksgiving Open Thread
· [60] Weekend Open Thread
· [40] EFF Wages War On Fine Print
Most people now reading
· 3.x Feral Druid - Bear Tanking Guide [World of Warcraft]
· Why does it take so long? Mail question [General Questions]
· [Newsgroups] Newzleech down? [Filesharing Software]
· Windows 7 boot manager editing questions [Microsoft Help]
· Whats the big deal about being "Old School"....? [World of Warcraft]
· Using AirMax to provide triple play services? [Wireless Service Providers]
· TPIA review by Electronic Box [Canadian Broadband]
· [Vista] Why is HD So Full? [Microsoft Help]
· [How to] Install Asterisk on an Asus WL-520GU router [VOIP Tech Chat]
· Not strictly "Home" related - but WOW anyways... [Home Repair & Improvement]