Hi All,
I'm looking to deploy NDES in our environment and I've read conflicting info whether installing on NDES role on the Enterprise CA is supported or not.
For example:
On this Technet Blog, it is suggested that the NDES role can be installed on the same box as the Enterprise CA: http://blogs.technet.com/b/askds/archive/2010/11/22/ipad-iphone-certificate-issuance.aspx
On this Technet Article, it recommeneds installing the NDES role on a separate box than the Enterprise CA, but if the CA is a standalone, it is ok to have the NDES service on the same box: http://social.technet.microsoft.com/wiki/contents/articles/9063.network-device-enrollment-service-ndes-in-active-directory-certificate-services-ad-cs.aspx
On this Technet Guide, the guide is pretty much the same as the above: http://technet.microsoft.com/en-us/library/ff955646(v=ws.10).aspx
So can the NDES role be on the same box as the Enterprise CA? Any reasons to separate the role? Any reasons why there is a difference in direction between deploying as Enterprise CA environment and Standalone CA environments?
Thanks,
Dave.K