Running SA2500 on 7.1R1.1 with host checker policy set to look for machine cert and realm authentication looking for user cert. My certs are coming up for renewal on 1/24 and am wondering how in the world my road warriors are going to be able to authenticate once I renew. The only thing I can think of is to disable the host checker policy and remove the client-side requirement so they can log in and refresh group policy so that the autoenrollment kicks off to automatically renew the certs. I can't be the only one that has run into this issue, so please, let me know how you solved it.
... View more