|
Posted by Anette Andresen on November 17, 2005, 2:08 pm
Please log in for more thread options
Hi,
I am in the progress of deploying smart card certificates in our company.
Our domain is almost a purely windows server 2003 domain, and we have
already installed a Windows Server 2003 enterprise CA.
The smart card certificates will be used for smart card logon and
e-mail/documents signing.
In the "Guidelines for enabling smart card logon with third-party
certification
authorities"(http://support.microsoft.com/default.aspx?scid=kb;en-us;281245#XSLTH4125121123120121120120
) it is stated that "Domain controllers must be configured with a domain
controller certificate to authenticate smartcard users". The question is
then, is this also a requirement when using a Windows Server 2003 Enterprise
CA? I haven't been able to find any documentation of that yet. If this is
the case, does anyone have a reference to a document/book that describes the
communication and the variables that is sent between the DC and the client
in a smart card logon process?
Thanks!
Regards,
Anette Andresen
|