Certificate Subject DN...

From: William Adams (w.adams@nexor.co.uk)
Date: 11/28/02


From: "William Adams" <w.adams@nexor.co.uk>
Date: Thu, 28 Nov 2002 15:16:08 -0000

Hi,

I have set up an Enterprise CA, I can happily issue certificates to people.
However I have a problem, I have a security program that relies on the
subject DN in the certificate to be the actual DN of the user in the Active
Directory. By default with a 'user' certificate template it is the email
address of the form CN=Bob Bloggs,emailAddress=Bob@bloggs.com. If you use
the 'Exchange user' template then it specifies a DN but this DN is made up
from what the user specifies on the form. Both of these methods mean the
subject DN in the certificate bears no relation to the active directory.

Any ideas on how to make the subject DN reflect the location of the user in
the directory?

    -Will



Relevant Pages

  • Re: Certificate Subject DN...
    ... Why would you say this is an odd requirement? ... to get to a certificate from the subject of a ... By default with a 'user' certificate template it is the email ... >> from what the user specifies on the form. ...
    (microsoft.public.win2000.security)
  • Re: Windows 2003 - Child domain cannot request certificate from root domain
    ... It sounds like you have replication problems ... permissions on the certificate template you want to use. ...
    (microsoft.public.windows.server.security)
  • Re: SSLinstall problem
    ... You error message seems to indicate there may already be a Certificate ... Authority but the CA certificate is not published in Active Directory. ... you try to install a CA on a non domain computer make sure you are trying to ... domain computer double check that the domain computer is using ONLY Active ...
    (microsoft.public.windows.server.networking)
  • Re: SSLinstall problem
    ... You error message seems to indicate there may already be a Certificate ... Authority but the CA certificate is not published in Active Directory. ... you try to install a CA on a non domain computer make sure you are trying to ... domain computer double check that the domain computer is using ONLY Active ...
    (microsoft.public.windows.server.security)
  • Certsrv and Autoenrollment problem
    ... The "Windows default" Policy Module logged the following warning: ... V1 Certificate Template could not be loaded. ... see Help and Support Center at ...
    (microsoft.public.windows.server.sbs)