
You can log into the MS CA server at (replace x.x.x.x with the IP address of your MS CA server). If the MS CA server is running IIS (and the admin has allowed access to this interface), the easiest way to obtain a copy of the root certificate is via web browser. This is done by verifying that each other s cert has been signed by a trusted third party in this case, the MS CA. When attempting to create a VPN tunnel using these certificates as the authentication mechanism, each side must be able to prove the identity and validity of each other s cert. The root certificate is what the MS CA server uses to sign the certificates for your SonicWALL devices and the SonicWALL Global VPN Clients. Obtain a copy of the root certificate Each SonicWALL device and all SonicWALL Global VPN Clients must have a copy of the MS CA s root certificate installed before you begin. If you wish to use MS CA-generated client certificates, you must use the new SonicWALL Global VPN Client. In order to use certificates from the MS CA servers, the SonicWALL device must have firmware 6.3.x.x or newer installed.
#Download sonicwall global vpn client 4.6 how to#
This technote will detail how to use the Microsoft Certificate Server (MS CA) to perform these actions. The certs can be used as the authentication mechanism when creating VPN tunnels between SonicWALL devices, or between SonicWALL devices and SonicWALL Global VPN Clients. 1 SonicOS Using Microsoft s CA Server with SonicWALL Devices Introduction You can use the Certificate Server that ships with Windows 2000/2003 Server to create certificates for SonicWALL devices, as well as the SonicWALL Global VPN Client.
