Error details: MSIS7121: The request did not contain a valid client certificate that can be used for authentication

AHMET HELVACİOGLU 1 Reputation point
2021-11-09T18:22:03.31+00:00

87271314-0351-452f-7c1a-0080080000ee
Relying party: WWIT-CP-PAIX-PF-phoneregistration
Error details: MSIS7121: The request did not contain a valid client certificate that can be used for authentication. This occurs when there are no valid certificates on the client computer, for example if all certificates have expired or been revoked. Error Code: 0x490
Node name: a34c7977-dbd1-401e-adaa-adbe38f1dbbe
Error time: Tue, 09 Nov 2021 17:51:38 GMT
Proxy server name: db***28
Cookie: enabled
User agent string: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/95.0.4638.69 Safari/537.36 Edg/95.0.1020.44

Microsoft Security | Microsoft Entra | Microsoft Entra ID
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. VipulSparsh-MSFT 16,311 Reputation points Microsoft Employee
    2021-11-16T12:28:38.857+00:00

    @AHMET HELVACİOGLU With the information that you have given, it seems mostly that the Server to which you are trying to connect is setup with certificate based auth and for some reason it is not liking the client certification you are presenting in initial Auth phase (wrong cert or may be expired).

    In order to help you further, we need more information from your side :

    1) What exactly are you trying to access ?
    2) How are you accessing it ? (Include URL, Device information)
    3) From the device you are trying to access that server, make sure that you have a client certificate which can be accepted by the server.

    The error does look like a ADFS scenario, if it is, do check the certificates from your replying party as well and see if the failure is happening for all servers. Do let us know if you need any help.


    Please remember to "Accept Answer" if any answer/reply helped, so that others in the community facing similar issues can easily find the solution.

    2 people found this answer helpful.
    0 comments No comments

  2. KKlouzal 26 Reputation points
    2022-02-02T17:49:58.767+00:00

    I am running into the same issue. AD FS 2019 Certificate Authentication. Client devices are registering however MSIS7121 the request did not contain a valid client certificate that can be used for authentication.

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.