Click here to get back home

win2003 + PKI + AD

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
win2003 + PKI + AD Pedro 07-04-2006
Posted by Pedro on July 4, 2006, 3:11 pm
Please log in for more thread options
Hi

I have problem with my CA. When I renew CA certificate (new KEY is
generate) on my SUB-CA (request issuing by OFFLINE ROOT-CA) and
installing new certificate on SUB-CA (SUB-CA is AD's member) and
publicate new CRL in "Active Directory Sites and Services" is create
new object:
AD Sites and Services\Configuration\Services\Public Key
Services\CDP\SUB-CA(1) but is not create
object: AD Sites and Services\Configuration\Services\Public Key
Services\AIA\SUB-CA(1).

My LDAP path for CDP distribution point:
ldp:///CN=SUB-CA(1),CN=CDP,CN=Public Key
Services,CN=Services,CN=Configuration,DC=company,DC=com?certificateRevocationList?base?objectClass=cRLDistributionPoint
WORKING OK
but
LDP for AIA: ldap:///CN=SUB-CA(1),CN=AIA,CN=Public Key
Services,CN=Services,CN=Configuration,DC=company,DC=com NOT WORKING
because AD haven't CertyficationObject SUB-CA(1)

What is wrong ?? Why AD don't create SUB-CA(1) in container AIA ?

P.


Similar ThreadsPosted
UserOverRide key on Win2003 November 10, 2006, 1:00 pm
Problems with NTP on Win2003 February 21, 2007, 11:00 am
Win2003 SP2 secuity problem December 1, 2005, 8:46 am
Win2003 Server - 10,000 Entries ! February 9, 2006, 11:28 pm
Security Config Wiz doesn't run on Win2003 SP2 June 4, 2007, 2:24 am
Win2003 SP1 remotely restart service June 14, 2005, 1:02 pm
Win2003 loses AD user account September 28, 2005, 8:39 am
IPSec tunnels win2003 server January 4, 2006, 8:01 am
Lockdown on 2nd NIC card on WIN2003 Server March 6, 2006, 3:01 pm
How to setup Win2003 as a proxy server ? October 13, 2006, 3:32 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap