Re: CA Problems



I forgot to Say that both Domain Controller (Windows Server 2003 Stabdard
Edition) and Member Server my CA (Windows 2003 Standard Edition) both have
SP1 installed.

Best regards



"JMS" <jms_pt@xxxxxxx> wrote in message
news:eElCBWHRGHA.4264@xxxxxxxxxxxxxxxxxxxxxxx
Hello everyone

I'm having a strange problem with my CA.

Configuration: Windows 2003 - Certification Authority - Configured as
Enterprise Certification Authority (Member Server)

I already configured Default Domain Policy
PK Policies

Computer Section: Autoenrollment Settings - Enroll Certificates Automat.,
renew expired certificates and update certificates.
Computer Section: Trusted Root Certification Authorities - I have The
Certificate for the Trusted Root Certificate Authority
Computer Section: Automatic Certificate Request Settings i have a computer
certificate

User Section: Autoenrollment Settings - Enroll Certificates Automat.,
renew expired certificates and update certificates.

Now the Problem:

The Root CA is being issued to all computers with no problems

The Windows XP in my domain are being issued with success the computer
certificate. (No problems with this)

None of my users are being issued any certificate.(I already tryed to
duplicate the user certificate and enabled Read, Enroll and Autoenroll
permission, but with no success)

My domain controller (also a Windows 2003 Standard Edition) don't have
certificate issued from my Root CA. I tryed to request manually from mmc
console All Tasks -> Request new certificate -> Domain Controller
certificate, but gives me an error: "The request could not be completed.
The RPC server is unavailable", if i type on command prompt gpupdate
/force, in my event viewer i get the error Source:AutoEnrollment -
EventID:13 - Description: Automatic certificate enrollment for local
system failed to enroll for one Domain Controller certificate
(0x800706ba). The RPC server is unavailable.

All of my computers in my domain have the root CA installed automatically.

Please any help woul be very app.
Best Regards.



.



Relevant Pages

  • Re: Need help configuring Wireless Connection profile
    ... and I can only use the intel OR windows utility, not both at the same time. ... Windows authentication for all users,4129,LRG\ryanv,4149,Wireless WPA2 ... SMALL BUSINESS SERVER: ... STEP #1 Install Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: Need help configuring Wireless Connection profile
    ... Now life is good in the Windows wireless world. ... now have a secure wireless setup within my small business server environment. ... "point" the info of the Radius authentication to your current Radius server. ... STEP #1 Install Certificate Services ...
    (microsoft.public.windowsxp.general)
  • Re: EAP-TLS with windows CE
    ... credentials at the login prompt for Windows Server 2003 on the server ... The certificate is a public thing, ... When the server asks the Windows CE device to identify itself, ... I could easily steal your authentication information. ...
    (microsoft.public.windowsce.platbuilder)
  • Re: EAP-TLS with windows CE
    ... Thanks for the quick response. ... Windows CE then prompts the wireless user for the ... to the AP which gets passed on to an authentication server (RADIUS or ... nothing to do with the contents of the certificate at all. ...
    (microsoft.public.windowsce.platbuilder)
  • Re: Auto certificate and key generation to pfx
    ... Best Practices for implementing Windows Server 2003 PKI: ... Troubleshooting Certificate Status and Revocation whitepaper: ... Regarding the certificate request: ...
    (microsoft.public.platformsdk.security)