Forum Discussion
Logins via the Network Policy Server (NPS) fail.
Hello folks,
Hope you are doing well and great. I have trouble with Certificate Authentication in our network environment. Let's explain in detail:
1- Our clients have a user certificate and a computer certificate issued by the Internal CA.
2-Clients try to connect to the NPS via wireless.
3-NPS communicates with the local Domain Controller and authenticates clients.
Everything is ok so far. Once we decided to update one of our domain controllers to the latest patches and security updates, after a while we faced the above error on NPS, hence I have changed the DNS and functionality of NPS to another DC which isn't updated.
After almost one month, we faced the above error on some sites. I have to emphasize on those sites, we have a local DC that wasn't updated, so we expected that the issue was not related to the update or any KB.
After digging into this error and conducting research on the Internet, I realized the issue is related to the specific KB Microsoft release in May 2022 that affects certificate authentication.
I know the best solution is updating all DCs, but for now it isn't possible for us, so I decided to find a solution temporarily to ignore this security issue, I have done all the solutions that were recommended on the Internet, but the issue still exists.
Now, are there any solutions to fix the problem except updating all DCs?
By the way, I found this link but I couldn't find workaround to fix the problem:
https://www.gradenegger.eu/en/logins-via-the-network-policy-server-nps-fail-with-reason-authentication-failed-due-to-a-user-credentials-mismatch-either-the-user-name-provided-does-no/