Troubleshooting: SCEP

Follow
    Applies to:
Deployment model:
  • On Premises
  • Version Affected: All
     
     

    Overview

    SecureAuth Identity Platform can request certificates through a customer's existing Public Key Infrastructure (PKI) using the Simple Certificate Enrollment Protocol (SCEP) and Microsoft's Network Device Enrollment Service — certificates issued this way chain back to the customer's existing intermediate and root certificates. When SCEP is misconfigured, a user requesting a certificate through SCEP in Internet Explorer sees: 0-Certificate Request Error: Please close out your web browser and try again. If problem persists contact help desk for assistance.

     

    Cause

    The SecureAuthScepService application pool is misconfigured.

     

    Resolution

    1. Go to D:\SecureAuthScepService\bin and confirm that SCEPService.dll and SCEPService.pdb both exist in the folder.
    2. Open IIS Manager, go to Application Pools, right-click SecureAuthScepService, and select Advanced Settings. Set Enable 32-Bit Applications to True, then restart IIS.

     
     

    SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.

    Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.

    0 out of 0 found this helpful

    Comments

    0 comments

    Please sign in to leave a comment.