Remote access vpn works fine using Meraki credentials. When we moved over to using AD we noticed that only domain admins are able to sign in. The single DC is also a CA and has a certificate installed which is still valid. If i take jdoe and attempt to sign in I get: The remote connection was denied because the user naem and password combination you provided is not recognized, or the selected authentication protocol is not permitted on the remote access server. as soon as I add jdoe to domain admins however he is able to connect w/ no issues. I'm trying to determine what would be the cause of this as the error points to a certificate issue but it works when the same user is an admin. Has anyone seen anything similar? Packet captures on a failed connection indicate a response is coming from the DC to reject the login.
... View more