W2k CA within 2003 ADS
Next message: Sonia: "Password"
Date: Fri, 17 Sep 2004 02:23:01 -0700
I have running a w2k certificate authority on a w2k member server. The domain
controllers are Win2003 (ADS win2003).
Now only the the domain administrator are abel to enroll a certificate.
Domain user can't enroll certificates, even they have administrator rights.
The users don't have the rights to access the certificate templates.
Could someone help me to find the problem?
Next message: Sonia: "Password"
Relevant Pages
- Re: Outlook security
... If you are not certian if you have a personal certificate for such ... > a client that could support 128-bit security. ... > and review the mailboxes of accounts of personyou know that are ... I logon with domain administrator previliges but have reconfigured ... (microsoft.public.outlook.general) - Re: unencrypting files that somehow became encrypted.
... recovery agents and match the thumbprints to certificates if there is any doubt. ... also have to import the RA private key to the computer to recover the files. ... backup certificate" which explains how to export private key also. ... > As the domain administrator and recovery agent I have tried unencrypting the file ... (microsoft.public.win2000.security) - Certificate Authority x Active Directory
... I have a Domain controller and I have a Server with Certificate Authority without Active Directory. ... But when I open the certificate authority, the option "duplicate template" isn't avaliable.... ... What's the permissions to permit that my Domain Administrator have access to duplicate a certificate in Certificate Authority??? ... (microsoft.public.security) - Re: Problems setting up the Recovery Agent
... Just wanting to clarify one thing about your test scenario. ... I created a domain user which I will use primarily as a RA. ... certificate so that it is a part of the Recovery Policy of the domain. ... I imported the cert by going to the Group Policy Editor/Computer ... (microsoft.public.windows.server.security) - Problems setting up the Recovery Agent
... I created a domain user which I will use primarily as a RA. ... certificate so that it is a part of the Recovery Policy of the domain. ... I imported the cert by going to the Group Policy Editor/Computer ... (microsoft.public.windows.server.security) |
|