A cloud-based identity and access management service for securing user authentication and resource access
Already add manually permission to the certificate for NETWORK SERVICE user, still doenst work.
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hello,
I'm using NPS Extension for Azure MFA to connect with our Sophos VPN and everything work but now it doesn't work anymore.
Looking into event viewer Ive found this log info:
Server Roles -> Network policy and access services -> The request was discarded by a third-party extension DLL file
Applications and services logs -> microsoft -> azuremfa -> authzoptch -> ErrorCode:: ESTS_TOKEN_ERROR Msg:: Unable to get Azure AD access token. [Reason:Keyset not exist]
I've already try to uninstall and install the latest version of NPS extension but still doesnt work.
Anyone that have face the same issue?
Thanks
Kristian
A cloud-based identity and access management service for securing user authentication and resource access
Already add manually permission to the certificate for NETWORK SERVICE user, still doenst work.
It seems like you are encountering an issue with the NPS Extension for Azure MFA where the request is being discarded due to a third-party extension DLL file, and you are receiving an error related to obtaining an Azure AD access token. The specific error message you mentioned, "Keyset not exist," indicates that there may be a problem with the certificate or its permissions.
Here are some steps you can take to troubleshoot this issue:
AzureMfaNpsExtnConfigSetup.ps1 script again, ensuring you use the same tenant ID.If these steps do not resolve the issue, you may want to consult the troubleshooting section for the NPS extension for further guidance.
References: