nickthecomputerguy
asked on
windows server 2012 r2 essentials anywherer access getting message with Remote Desktop. "this computer can't verify identity of RD gateway"
Windows server 2012 r2 essentials anywhere access.
I configured Anywhere access and had it working for a few weeks.
All of a sudden all users are getting a message when trying to use the remote desktop feature.
The web interface works great. User can see Shared Folders and Devices.
The Users selects device to connect to, Downloads and saves the RDP file locally and then gets prompted to login.
They enter their credentials and then get the following error during connection.
"this computer can't verify the RD Gateway. It's not safe to connect to servers that canbe identified. etc etc, etc....."
I have a certificate for the url from cacert.org. The https works so that should be the certificate is good.
Why do I get this error and what is the best way to resolve the issue.
Thanks
Nick
I configured Anywhere access and had it working for a few weeks.
All of a sudden all users are getting a message when trying to use the remote desktop feature.
The web interface works great. User can see Shared Folders and Devices.
The Users selects device to connect to, Downloads and saves the RDP file locally and then gets prompted to login.
They enter their credentials and then get the following error during connection.
"this computer can't verify the RD Gateway. It's not safe to connect to servers that canbe identified. etc etc, etc....."
I have a certificate for the url from cacert.org. The https works so that should be the certificate is good.
Why do I get this error and what is the best way to resolve the issue.
Thanks
Nick
Sounds like an SSL issue to me.
I would get a proper SSL certificate from godaddy or someone and set it up again.
See:
https://www.experts-exchange.com/questions/26591243/This-computer-Can't-verify-the-identity-of-the-RD-Gateway-remote-domain-com-It's-not-safe-to-connect-to-servers-that-can't-be-identified.html
http://www.andrewstechnology.co.uk/reference/tips/44-sbs2011-rd-gateway-cant-verify-error.html
I would get a proper SSL certificate from godaddy or someone and set it up again.
See:
https://www.experts-exchange.com/questions/26591243/This-computer-Can't-verify-the-identity-of-the-RD-Gateway-remote-domain-com-It's-not-safe-to-connect-to-servers-that-can't-be-identified.html
http://www.andrewstechnology.co.uk/reference/tips/44-sbs2011-rd-gateway-cant-verify-error.html
ASKER
I will give that a try but I am still confused as to why it worked for a few weeks and the the issue started.
Check your external IP has not changed if you are not on a fixed IP maybe?
ASKER
The IP is static and no changes to ISP since install. Thanks
ASKER
I purchased a new SSL certificate pointing to my domain and installed it on the server.
when I login to use the remote desktop I get the same error because it is showing the old certificate.
How do I force the installing of new certificate?
Thanks
Nick
when I login to use the remote desktop I get the same error because it is showing the old certificate.
How do I force the installing of new certificate?
Thanks
Nick
You can change the certificate in the TS Connection manager (tsconfig.msc). Right click the connection and select properties and at the bottom of the RDP-Tcp Properties window in the general tab you get to choose the certificate, or import a new one.
From post: https://www.experts-exchange.com/questions/25885451/How-do-I-change-the-certificate-for-a-RemoteApp-source-for-Remote-Desktop-Services.html
From post: https://www.experts-exchange.com/questions/25885451/How-do-I-change-the-certificate-for-a-RemoteApp-source-for-Remote-Desktop-Services.html
ASKER
No TSCONFIG in Windows 2012 essentials.
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
I still didn't resolve this issue.
ASKER
The problem ended up being wrong information in the whois database. They had old contact information from a long gone
employee and the certificate issuer kept sending a verification email to a deleted email address. It is working now thanks for your input.
employee and the certificate issuer kept sending a verification email to a deleted email address. It is working now thanks for your input.
ASKER
I had to sit and hash it out with support from the certificate authority.
ASKER
A button on the windows says View Certificate. I view the certificate and it has a warning that "Windows does not have enough information to verify this Certificate". Certificate Status "The issuer of the certificate could not be found".
Is this a configuration issue with anywhere access or windows certificates or the certificate itself?