To resolve this issue, create an IPSec certificate template at the enterprise CA:
- Start the Certification Authority Microsoft Management Console (MMC) snap-in that is located in the Administration Tools folder on the enterprise CA.
- Right-click Certificate Templates, and then New - Certificate Template to Issue.
- Click the IPSEC template, and then click OK.
NOTE: Computers do not receive the IPSec certificate until the next Group Policy refresh interval. To force an immediate policy refresh, you can use the
gpupdate command.