What is the role of a Policy CA
Hello AllCan someone please help me with the following question please (thanks in advance)I read the following (from another post on this forum regarding Policy CAs)---------------------The role of a...
View ArticleHow do i configure web enrollment services to get a sha256 cert for a 2003...
I have just stood up a 2 tier 2012 CA environment using web enrollment services. I can request certs through enrollment services for 2008 and 2012 servers (domain joined and non-domain joined) without...
View ArticleThe RPC server is unavailable 0x800706ba Kerberos Authentication problems
when I attempt to establish a WMI connection from a Windows 2008 server to another Windows 2008 server in the same domain i get The RPC server is unavailable 0x800706ba error. (Firewall is not an issue...
View ArticleSetup NPS to authenticate wireless connections with cisco WLC
Hi,Is there any documentation available that shows how to setup NPS & CA (Win2008) to authenticate domain users with a Cisco WLC? It worked a while back with a Win2003 server but that server has...
View ArticleAccess Denied error (code 5)
Hi I am using server 2008 r2 sp1 while installing any windows update or my sql I am getting error code 5 access deniedand i am installing with Admin ID. What can be the reason?
View ArticleMultiple Issuing CA at different Geographical Location
We are running Three-3 tear Microsoft PKI environment with one-1 Root CA, one-1 Intermediate CA and one-1 Issuing CA at our headquarters. We want to introduce redundancy in our environment with respect...
View ArticleCDP and DeltaCRL locations expiring on Issuing CA
This has been a crash course in PKI and I am taking over for a previous sysadmin which has made it even more interesting. I'm hoping that you smart folks can help me to better understand my...
View ArticleServer 2012 Local Shares - Cannot access using \\IP but works via \\localhost
I've been stuck on this problem for the last couple of days and I can't find a solution on the internet that works. I have a Windows Server 2012 instance running on Amazon AWS with a public IP...
View Articledesabling creation of loggs about services & users log on & log off in event...
hi friends. i have a problem which i didn't find a real solution after lots of googling. i need a setting so that events which are related to starting services & log on & log offs (and maybe...
View ArticleCredential Manager in Server 2008 R2 fails to open with error 0x80070043...
Hi! I am having some trouble with the Credential Manager for one of my users on my 2008 R2 Server. Whenever I try to open the Credential Manager in Control Panel, I get the following error:"An error...
View ArticlePKI and security question
Hi,What is the security implication of exporting PKI certificates with their private keys? Also, what's the security implication of self-signed certs?Thanks
View ArticleSecurity Logging for login to domain machine (ie. windows 7)
Hi AllI have a difficult question here. would like to know how to solve this from the event log; system and security log.I worked in a MNC. would like to check the login status of my IT staff. below...
View ArticleIssues installing .net updates offline
Attempting to install KB2972215 and KB2972216 to a couple of windows 2008R2 x64 systems give the "Generic Trust Failure" error. As far as I can tell, they are attempting to authenticate to microsoft,...
View ArticleUser failed logon attempts are not logged in the security log
Hi,I face a problem with the security log. I have 2 DCs with W2K3 R2 x86 SP2. Auditing for logon events, is enabled for both success and failure, for all DCs, member servers, and computers via group...
View ArticleS/MIME Outlook finds no Public Key from AD
I have setup Autoenrollment for S/MIME from my Internal PKI (Two tier published to ad) . I used these templates with option "Publish to AD"Signing = Exchange Signature Only Encryption = Exchange UserMy...
View ArticleCan I safely remove my Enterprise CA?
Hi,I am replacing two old DC's (DC1 & DC2, running Server 2008) with two new DC's (DC3 & DC4, running Server 2012). DC1 is currently our Enterprise Root CA. When I view 'Issued Certificates'...
View ArticleSHA1 CA to SHA2 CA
I have an internal CA that the CA Cert is sha1.It is an internal Enterprise CA, used for personal purposes only What is the best practice to upgrade a CA Cert from Sha1 to Sha2?Down grade the CA Server...
View ArticleADCS Policy Web Service - Access was denied by the remote endpoint....
Hi there fellow colleagues, I am currently facing a problem with ADCS Policy Web Service on Windows Server 2008 R2 Enterprise (SP1). • Hotfix installed...
View ArticleWindows update signing certificate invalid on Windows version prior to 8.1
Hi Everybody,Hopefully this is the right section for my question.On a Windows 2008 server, we have a replica WSUS installed. An update is not being installed as the certificate verification fails. When...
View Article