NPS error 18 after moving NPS server

Carlton Whitmore 1 Reputation point
2022-09-09T23:32:45.457+00:00

I have Always on VPN setup on a server and NPS on a domain controller. I was in the process of decommissioning my DC with NPS so I exported my NPS settings and imported them into the new DC. After doing that I restarted NPS then on my VPN server in RRAS I opened Properties and changed the RADIUS authentication server from the old DC to the new one. Problem is that when I did that I didn't realize there was a shared secret.
Now when people connect to the VPN I get error 18 in the event viewer on the new NPS server. I tried reverting back to the old NPS server, but I'm getting the same error.
If I don't have the shared secret for that RADIUS server what are my options? (I have the backup of both the NPS and RRAS config)

Windows Server Infrastructure
Windows Server Infrastructure
Windows Server: A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.Infrastructure: A Microsoft solution area focused on providing organizations with a cloud solution that supports their real-world needs and meets evolving regulatory requirements.
535 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Carlton Whitmore 1 Reputation point
    2022-09-10T11:48:19.917+00:00

    Okay, after changing the NPS and RRAS shared secret it's working again under the old NPS server. My only issue now is that when I try using a different NPS server I get an end user certificate error.

    0 comments No comments

  2. Limitless Technology 39,586 Reputation points
    2022-09-12T20:06:34.927+00:00

    Hello there,

    What is the exact certificate error you are getting ?

    Please try these two things separately to see if the issue is gone:

    1. Enable, or disable the "Message Authenticator" option in the settings of your defined radius client on your NPS Server, and try to see if the issue is resolved.
    2. Add the PEAP authentication method, and try to see if the issue is resolved.

    I hope this information helps. If you have any questions please let me know and I will be glad to help you out.

    -------------------------------------------------------------------------------------------------------------------------------

    --If the reply is helpful, please Upvote and Accept it as an answer--

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.