Quantcast
Channel: Security forum
Viewing all articles
Browse latest Browse all 12072

Move Certificate Services from a DC to a Standalone

$
0
0
We have a 2008R2 AD Catalog Server that has all of the FSMO roles. It is also configured as an Enterprise CA. I need to decommission the physical DC server and move the CA; not necessarily in that order. I do not want to keep the name of the Server active necessarily. Most of what I am seeing suggests that there is going to be some period of time where this is no CA on the network. Secondly, if the server name changes then I understand the certificate services may not work correctly. If I remove the role from the source CA why can't I just deploy a new server, with the new CA role and abandon the old cert databases?

Viewing all articles
Browse latest Browse all 12072

Trending Articles