|
Posted by Saleh Matani on January 5, 2006, 9:23 am
Please log in for more thread options
Christoph schrieb:
> Hello
> Initial position:
> -Root- and Subdomain W2003, Clients XP Prof.
> -W2003 PKI with a root (standalone, not ad-integrated) and an
> enterprise subca (ad-integrated).
> -Enrolling smartcards on behalf of idNexus
> -Certificate template (encryption) is configured to publish
> certificates in AD
>
> Problem:
> The smartcards with the certificates are enrolled perfectly but on the
> user objects in AD there are no encryption certificates published. They
> should because we need them on the user object for an encryption
> software getting them there in AD.
>
> I tried also with softcertificates (one encryption, one client
> authentication) which I configured with the same checkbox on the
> template "publish certificate in ad". Then I autoenrolled to some
> users. But also here no certs are published onto the user obejcts.
>
> Anybody has an idea what the problem could be?
>
> Thank you very much!
>
> Christoph
>
Hello Christoph ,
check the Permissions of AD user objects (with ADSIEDIT.MSC) or if the
enrollment Software is logged as domain admin to be able to publish user
certificates!
try to publish a loged user certificate with mmc!
waiting for your feed back
Saleh Matani
|