Very slow login smart card
I have a problemwith the user whoisloggingthroughthe cardexpectsa few minutes tolog on.Another user onthe same stationlogs ina few seconds.The userwhologs in to severalminutestrying tolog on toanother...
View ArticleUnable to Dowload CDP from ldap path
My certificates expired and I needed to renew my issuing CA certificate from the offline root. Using certutil -dspublish I published the new root certificate and the new root CRL file. Now within...
View ArticleWin2008R2 IIS7.5 multiple SSL certificates
We have 1 IIS website that has multiple bindings. Is it possible to have multiple SSL certificates on the one IIS website bound to 443.e.g. https binding with SSL certificate www.companya.com, another...
View Article"Everyone" can view the EventViewer of the DC's
Hi TechNet MembersI'm here to ask a big question and risky one.Everyone's in my ORG, can view and scrolldown & up anytime and check the whole "Eventviewer" from the DC's.It's so risky, And for...
View ArticleInterop with *nix systems in corporate enterprise
Hello experts, Does anyone know of a working (maintained) solution to enable SSH between *nix and Windows servers? I've seen examples of OpenSSH and/or CygWin (stand-alone) implementations but not one...
View ArticleSmart card logon not working until I disable revocation check
Hello-I have Server 2008 R2 (not running in native 2008 yet), have certificate services installed on a DC, imported all the proper certificates into the store. Server uses Axway (Tumbleweed) validator...
View ArticleConfigure Cisco ASA - Microsoft CA Certificates
Hi All, we have a cisco ASA and a windows 2008 r2 certificate authority. We require our cisco vpn client users to have a user certificate installed on their remote PCs to authenticate with the cisco....
View ArticleThe parameter is incorrect. 0x80070057 (WIN32: 87)
Hi,I built a two-tier PKI based on this guide: http://social.technet.microsoft.com/wiki/contents/articles/15037.step-by-step-guide-two-tier-pki-hierarchy-deployment.aspxI set...
View ArticleADCS Certification Authority Web Enrollment - HTTP Error 403.14 - Forbidden
Hi,I have setup the role service 'Authority Web Enrollment' on the same server hosting the 'Certification Authority' role service. When I try to access the page through the URL:...
View ArticleServer 2008 and MS Access 2007 Scheduled Task
I have a Server 2008 with MS Access 2007 installed.I created a task that is designed to lanuch Access, open a designated database, and run a macro. The macro calls a function within the database that...
View ArticleCan Exchange ditribution lists be used for folder security
Hello,is it possible to use exchange distributon lists as folder security on a windws file server?Advantage would be that only the distribution list should be updated in order to change folder...
View ArticleServer 2012 Three Teir PKI Deployment
Hi I've been test building this on the bench prior to deployment.I have;1x Offline Root CA 1x Online Intermediate Subordinate Enterprise CA 2x Issuing Enterprise Subordinate Enterprise CA's 1x Issuing...
View ArticleApplying security to folder according to its username
Hello dear gurus. I have a question. I couldn't find anything on the web..So I have about 600+ folders. Each folder corresponding to username in domain whom I must grant access to it.For example:...
View ArticleDecommissioning of CA server and Recommission of ADCS
Hi All,Recently I have to upgrade my old Windows 2003 with FSMO roles to Windows 2008 R2 while retaining the hostname and IP address of the old server. I have transferred the FSMO roles to another...
View ArticleADCS: Export public certificates from CA database using certutil
I need to export a large quantity of users' public certificates from the CA database. I don't want private keys; just the certs. Either Base64 or DER is fine. Is it possible to do this with...
View ArticleFailure reasons eg: 2313 in ID 4625
HelloDo You have the list with descr of failure reasons eg. %%2313, %%2307... I've searched Net and nothing.. :(Mainly I see it in ID 4625.Thank you in advance for your help!Damiano
View ArticleWindows Server 2012 R2 "The password is incorrect. Try again."
Hi,I tried to login to my Windows Server 2012 R2 and I got this message "The password is incorrect. Try again." Although the username and password are absolutely correct.Any thoughts. Thanks.
View ArticleDoes Event 4662 replicate to other DCs?
We have an application that uses LDAP to authenticate against AD. The application talks to a single hostname in DNS that contains all of our domain controllers. Each DC is then accessed via Round...
View ArticleOK icacls command that should work but doesn't.
icacls "c:\windows\system32\spool\PRINTERS" /grant administrators:(IO)(CI)(OI)F /t When some of my systems go to print a PDF the spooler just locks up. I can't control what type of PDF files are...
View Article