I have a Windows Server 2008 R2 machine that has the following configuration:
- It's a domain controller
- It runs IIS and serves the Default Website with HTTP bindings
0.0.0.0:80
and[::]:80
and with HTTPS bindings0.0.0.0:443
and[::]:443
. The HTTPS bindings use a widely trusted X.509 / SSL certificate from NameCheap formydomain.com
. - It has the RAS service installed with
mydomain.com
selected the certificate on the RAS Security property sheet. It does not have the NAP role service installed.
I cannot connect to the VPN using any Windows client. The Event Logs on the clients report receiving a HTTP 503 response from the SSTP server. I investigated by querying the SSTP endpoint directly and I received the generic (HTTP.SYS generated?) "Service is unavailable" error message. I get the same error when I access it locally.
The SSTP endpoint URI is https://mydomain.com/sra_{BA195980-CD49-458b-9E23-C84EE0ADCD75}/