Re: RPC Server Unavailable When Requesting Computer Certificate

From: Brian Komar [MVP] (bkomar_at_nospam.identit.ca)
Date: 09/22/05


Date: Thu, 22 Sep 2005 10:19:20 -0500

In article <uKZbFP2vFHA.2792@tk2msftngp13.phx.gbl>,
bjblackmore@hotmail.com says...
> Hi Steve,
>
> Thanks for your help.
>
> We're running Windows 2003 standard server SP1, with an Enterprise CA.
> Clients are Windows XP SP2. Firewall/VPN server is ISA 2004 SP1.
>
> Ben
>
Ben,
The biggest issue you face is that you can only issue certificates based
on version 1 templates in your configuration. An enterprise CA running
on standard edition cannot issue certificates based on version 2
templates.

Why I am harping on this is that if the CA was running on enterprise
edition, you could then create a custom v2 certificate template that
provides the subject in the request, and allows private key export.

brian



Relevant Pages

  • RE: CA Client Certificates only expire in one years time
    ... If this was installed as an Enterprise CA this is normal. ... which in v1 templates cannot be modified. ... "For certificates that are issued by Enterprise CAs, the validity period is ...
    (microsoft.public.windows.server.general)
  • RE: CA Client Certificates only expire in one years time
    ... If this was installed as an Enterprise CA this is normal. ... which in v1 templates cannot be modified. ... "For certificates that are issued by Enterprise CAs, the validity period is ...
    (microsoft.public.windows.server.general)
  • Re: Adding the Certificate Templates to the Certification Authority
    ... version 2 templates are only available from a W2003 Enterprise CA. ... though MS does have 802.1X download for Windows 2000. ... to use PEAP which does not require certificates on the clients. ...
    (microsoft.public.security)
  • Re: Certificates are not published
    ... > You don't issue certificate templates, ... > running on Windows Server 2003 Standard Edition does not support the use ... > running on Windows Server 2003 Enterprise Edition. ... Then I must distribute the certificates manually. ...
    (microsoft.public.windows.server.security)
  • Re: RPC Server Unavailable When Requesting Computer Certificate
    ... The biggest issue you face is that you can only issue certificates based ... on version 1 templates in your configuration. ... on standard edition cannot issue certificates based on version 2 ... Why I am harping on this is that if the CA was running on enterprise ...
    (microsoft.public.windows.server.security)