Steps when generating a certificate
Hi GuysAs per my previous question, we are looking to use an internal PKI to generate certificates that will be deployed to Mobile Devices. It seems we can use MobileIron/ Airwatch to deploy the...
View ArticleStorage of certificates in PKI
HiWe are looking at two options for PKI - Enterprise and Standalone. In either case, we'd be generating user certificates.For the Enterprise CA, I've read that the User Certificates are stored with the...
View ArticleCertificate based authentication for mobile
We are looking at deploying mobile applications to our mobile BYOD estate. One of the ideas we're looking at is using user certificates pushed to the devices as a form of authentication in addition to...
View Articleproblem with the certutil -crl command
heyi configured the CA to publish CRL to this location: c:\inetpub\publish\crlthrough the certsrv.msc when i do publish the crl are getting publish.if i run the command: "certutil -crl" i get the...
View ArticleMigrating Certificate Services to Server 2012 in a 2008 R2 AD Domain
We have a Windows 2008 R2 SP1 Active Directory domain. Our Enterprise Certificate server is running on Windows 2003 R2. We'd like to introduce a Windows 2012 server into our existing domain and migrate...
View ArticleMultiple Failure Audit event ID529 from same network source address
Hi thereI seem to be having a security issue with my server. I am running SBS 2003. The issue is that when I check my event logs the security section is reporting a Failure Audit almost ever 90...
View Articleremote desktop services user rights assignments
How can you get a report from either a windows client OS or windows Server OS on which users and groups have the relevant user rights assignment to access the server via remote desktop software? I know...
View ArticleMigrate CA from 2008 R2 to Server 2012
I currently have our CA on a 2008 R2 DC and I am in the process of migrating CA to a new server that is not a DC. The computer name is not going to be the same and I cannot figure out what steps are...
View Articleerror user name and password incorrect..
HelloI am using operating system windows vista and my system in domain. I am trying to change my password by ctr l+alt+Del next option change passwordI typed old password and typed new password i am...
View Article'Secondary Logon' service for Windows servers - enable or not?
Hi, Since have only one windows server working as 'TS server' to remote employes on our network and another 04 (one for SQL, another for Exchange, another for File and another for DHCP/DNS), can we...
View ArticleSignTool.exe verify /pa returns exit code 1 from the code but works fine...
Hi,I am using SignTool.exe from a new Process() to verify a codesigned assembly and it returns the exit code 1 whereas it returns exit code 0 while i run the same from Visual Studio Command prompt....
View Articlelocked out of email
I tried my password too many times and got locked out of my email. The problem is that my account is through my school Eastern Washington University, and I had to reset my password through them....
View ArticleServer 2012 CS Web Enrollment missing new template
I've duplicated the Web Server template and ensured that it is set to 2003, added necessary permissions. Ensured that "Allow Private Keys to be exported" is checked. Set Crypto to 2048. I saved and...
View ArticleUnable to receive an email by task scheduler on audit failure in windows...
Deal All,I am sorry in advance if i would be on wrong forum, i have created a task on Server 2008 r2 Domain controller that when an audit failure event triggered in windows security log then an email...
View ArticleAuthentication certificates and Private Key
HiWe are going to be using certificates deployed onto mobile devices to provide a method of authentication for the client (mobile) to the server. That is, the presence of the certificate on the mobile...
View ArticleRemotely login error on windows server 2003 using gemalto smart card
I am getting this error when trying to log on windows server 2003 remotely using smartcard. We have our own CA. We are able to successfully logon on windows server 2008 using same card.
View ArticleRoot CA AIA Extenstions
Hi All,I have a question regarding the AIA locations for my PKI infra. My environment;Two Tier – Offline root and 4 issuing servers (all in root domain) All servers are server 2012 STD. My offline root...
View ArticleBlock ping in windows server 2012
hello As can block ping a windows server 2012 to prevent it from getting through a hacker program and fall many ping the server ... atte JA
View ArticlePublish New Certificate Revocation List (CRL) from Offline Root CA to sub CA
CRL on offline Root CA is expiring soon. Since this is standalone offline Root CA, CRL need to be published manually and copied to subordinate CA's. Could you please let me know the procedure to...
View ArticleChanging CDP and AIA on internal CA
Good morning, I have a quick question:I have an environment with 1 Root CA and 1 issuing CA, both are domain-joined and online. If I make changes to CDP and AIA, do I have to renew the CA-cert for both...
View Article