You maybe able to help me here actually.
I am setting up the authentication for mobile remote access. I want all corporate machines, connection to the IPSEC VPN to have a personal certificate, and also RADIUS auth.
I know there is an option under multiple auth for cert+user and password.
I believe the 'personal certificate' part needs to be created by the internal CA, hence why I am trying to log into the ICA.
Am I doing this wrong? I want 1 generic certificate that I can generate and deploy via group policy to all corporate machines, so non-corporate machines can not connect, regardless if they can authenticate via RADIUS.
1) Would this work?
2) Is this the best way to do it?
Danny - your help is appreciated. I feel like I am running around in circles at the moment.