Auto enrolled computer certificate renewal

From: Alistair Keay (keaya@hotmail.com)
Date: 02/16/03


From: "Alistair Keay" <keaya@hotmail.com>
Date: Sun, 16 Feb 2003 12:58:14 -0800


Group policy configured to auto enrol machines with a
computer certificate from a W2K cert server. (This all
works fine.)

The computer certificates (1 year life) are coming to
their expiration date.
What is the mechanism for certificate renewal when does
it take effect?

The only article I have found is shown below but the
article doesn't give any indication of when renewal will
start to occur and I just want to check it is true.
(The certificates are used for IPSEC authentication for
VPN. Would be a disaster for me if certificates expire!)

"When auto enrolment is configured the computer
certificates that are issued by auto-enrollment are
automatically renewed from the enterprise-issuing CA."

Thanks.



Relevant Pages

  • computer certificates for L2TP/IPSec
    ... >computer certificate to install that will work for the ... >I can install certificates through the CA web services ... >interface but cannot get a Computer certificate to list ... >ping admin verbs and get succesful responses... ...
    (microsoft.public.windows.server.sbs)
  • computer certificates for L2TP/IPSec
    ... I can install certificates through the CA web services ... interface but cannot get a Computer certificate to list as ... ping admin verbs and get succesful responses... ...
    (microsoft.public.windows.server.sbs)
  • Re: Automatically Renewing User Certificates from Inhouse CA?
    ... Yes autoenrollment will make your life much simpler. ... > Thanks very much for all your help, Steve. ... > This is a rather good article that goes over certificates in Win2k3, ...
    (microsoft.public.win2000.security)
  • Re: Is MCAD.NET cert based on VS2003 still worth to take?
    ... It seems like a fact of life that you will need it to get ... I think that's all certificates are good for - to get past the HR ... Please delete "REMOVE" from the e-mail address when replying. ... Prev by Date: ...
    (microsoft.public.dotnet.framework.aspnet)