Find where specific certificate is in use?
hiis it possible to check where a specific certificate is being used?I just started working at a company where they have 2 certificates with the same name.They don't know why there's 2...1 expires in...
View ArticleLAPS x86 client-side extensions on 64bit computers?
We are a 98% Win7 x86 workstation environment and about to push out the LocalAdminPasswdSolution software from Microsoft. I am using Group Policy to push it out and was going to try and keep things...
View ArticleIs using a wildcard certificate allowed for a domain controller?
Hi,I'm using a wildcard certificate issued by Entrust on my domain controllers for LDAPS. Is using a wildcard cert allowed for a domain controller?When i connect using LDP on port 636 I can see the...
View ArticleMS patch is getting detected by Nessus vulnerability scanner even the it's...
Hello Guys,The below updates is getting detected by nessus vulnerability scanner even it's showing not required while installing manually for Windows server 2008 SP2 and Windows server 2008 R2 SP1 for...
View ArticleCertutil giving 'Expected INF file section name' error
I'm trying to change the friendly name of a SSL certificate.I'm using this command:"CertUtil.exe" -repairstore –user MY XXX changeCertFriendlyName.infchangeCertFriendlyName.inf file content: [Version]...
View ArticleIssue in publishing CRL on webserver
Hii am getting a problem that CRL's is not publishing on our web server.we have created one publisher server to handle crls and configured AIA & CDP location also in CA.RegardsJaspreet
View ArticleHow to generate a CSR in IIS 7.5 with SHA2 algorithm
Hello,Is it possible to generate a CSR in IIS 7.5 using SHA2 encryption algorithm.We used to create the CSR using Microsoft RSA Schannel Crytographic Provider or Microsoft DH Schannel Crytographic...
View ArticleWindows Server 2012 R2 PKI Training for 2016
Since I am receiving a large number of inquiries, I thought it might be easier to post information here about my PKI training courses available in 2016. These are all confirmed classes, guaranteed to...
View ArticleMultiple User Certificates
We have a two tier certificate server (one offline and one issuing CA) for our domain. Our O365 people noticed that some users have 10+ user certificates issued and those certificates are getting...
View ArticleOpen File Security Warning - Always Ask Before Opening
Hello,I am trying to launch an exe from an unknown publisher and I get the Open File - Security Warning dialogue.The problem I am having is that the Always Ask Before Opening This File checkbox is not...
View ArticleSecurity alert Event ID:4625 Logon type: 3 from IP 89.248.167.x
Hi, we are having a lot (thousands) of failed logon attempts daily from 6 or 7 ip addresses like 89.248.167.x or 58.247.6.x etc.Most of the source IPs appear to originate in China or Amsterdam and we...
View ArticleExtend root and subordinate CA validity period by renewing their certs with...
Scenario : Standalone root CA validity is set for 10 years, and subordinate enterprise CA validity set for 5 years. Due to a change in requirements, we need to change the enterprise CA validity to 10...
View Articlesteps to renew root, subordinate, and issuing CA certificate authority in...
Hello Experts, We do have a PKI infraestructure in place running Windows 2008 R2, AD Forest/Domain functional level are Windows 2008 R2. All DCs, and certificates servers are Hyper V VMs running...
View ArticleWhat are all the pre and post checks during renewal of SubCA.
Myself Shivakumar, I need help from you on Renewing Subordinate CA(Issuing CA). In my current Organization we have Root CA : StandAlone and Sub CA (Issuing CA) is Enterprise CA. by default Root CA...
View ArticleWhat are 'FVE' and 'DPNGRA' Certificates keys?
Hello,I am looking for references on the Certificates registry key at:HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Group Policy...
View Articlecertutil -dspublish CRL (Directory object not found)
I'm trying to publish my root CA's CRL in AD for the first time and are receiving the following error 'Directory object not found'. Publishing my root's certificate to AD works fine (verified in ADSI...
View ArticleWindows 2008 R2 pki question
helloI have two tiered PKI structure. one offline standard root ca. And two enterprise issuing subordinate ca. all of them are running Microsoft Software key Storage Provider with 256 hash algorithm....
View Articleself-signed and Third party Certificate for Exchange 2010
Hi, We have our exchange 2010 with a self-signed certificate installed , now that we have purchased a third party certificate, if i import it to EMC without removing the private certificate will it...
View ArticleAre my system admins changing or resetting their password?
Is there a way I can tell if my system admins are changing their password or just resetting them?I want to make sure they are actively using another password and not just reusing the same one over and...
View ArticleConfigure Windows Server 2008 R2 for DDos Attack.
Hello.How can I Configure Windows Firewall for protect my Web Server against DDos Attack? My server just run IIS and which services must be disabled ?Thank you.
View Article