SSTP-connect
/certificate
add
name=ca-template common-name=ca.xu.com
days-valid=3650 key-size=2048 key-usage=crl-sign,key-cert-sign
add
name=server-template common-name=*.xu.com days-valid=3650
key-size=2048 key-usage=digital-signature,key-encipherment,tls-server
第二步进行签名,ca做自己签名。
/certificate
sign ca-template
name=ca.ibm.com
sign server-template
name=server.xu.com ca=ca.ibm.com
————————————————
3.导出ca证书,到受信任的根目录
4.部署PS:powershell.exe -c ‘Add-VpnConnection -name “office-remote” -ServerAddress “server.ibm.com” -TunnelType Sstp -auth MSChapv2 -RememberCredential -PassThru’