cancel
Showing results for 
Search instead for 
Did you mean: 

Junos Pulse Certificate problem

SOLVED
Shailesh_
New Contributor

Re: Junos Pulse Certificate problem

Hi,

I have the similar problem and I am using latest Apple IOS and Latest Junos pulse client for Iphone.

We are trying to use a certificate server to authenticate and it worked fine, until we had a single client certificate. To test I used another iphone and a new certificate, and configured it exactly as the one which was working (different certificate ofcourse).

I am getting a message: Timed out! Retry?Ó and NO or YES options, and immediately after that I get: VPN Connection The server certificate has expired. Contact your network AdministratorÓ. However when I launch the browser and login to the SA2000 using the same certificate I am able to get in.

Is this some bug in the Pulse client or something I can do to make it work?

Additionally: During troubleshooting, I changed the authentication method, to LDAP authentication, it worked and when I switched back to Certificate authentication it worked only when I had configured the Pulse client from scratch. Now this work around is unreliable and not practical.

mmalone_
Not applicable

Re: Junos Pulse Certificate problem

Same problem here.

I setup the profile on the iPhone and launched the Pulse Client.

When I try to connect I get "Certificate expired......Timed Out......Certificate expired....Timed Out".

This happens in milliseconds. Timeout?

Sounds like you have a bug on your hands JunOS. Fix it!

entrada_
Not applicable

Re: Junos Pulse Certificate problem

Hi,

it seems that Junos Pulse or Apple iOS is having problems using self signed certificates that are not trusted together

wirh user certificates.

I was having the same issues, but after i added the self signed CA to the iPhone as a trusted CA (use a valid hostname resolved by DNS - it will not work with an IP as the iPhone will still not recognize the CERT as trusted) everything worked.

regards,

Nick

michael.saw_
Regular Contributor

Re: Junos Pulse Certificate problem

Iphone Configurator Tool:

http://support.apple.com/kb/DL1466

For Android:

http://www.mcbsys.com/techblog/2010/12/android-certificates/

Anyone got better links to share?





Thanks!

Michael
JNCIA-JUNOS, JNCIS-ENT/SEC, JNCIP-ENT
(CCNA, ACMP, ACFE, CISE)
"http://www.thechampioncommunity.com/"
CONNECT EVERYTHING. EMPOWER EVERYONE.
Share & Learn. Knowledge is Power.

"If there's a will, there's a way!"