Autoenrollment failed for Domain Controller

From: MF (mfk_at_yahoo.com)
Date: 05/25/05


Date: Wed, 25 May 2005 11:33:03 +0200

Hi,
I have removed an Enterprise Root CA (KB 889250) and installed a new one on
a Windows 2003 (Standard Edition) DC. Now I get following error on all
additional domain controllers.
'Automatic certificate enrollment for local system failed to enroll for one
Domain Controller certificate (0x80070005). Access is denied.' If I try to
get manually a certificate, I get also an error. On member server or a
client I can install machine certificates! I have searched the MS KB and
newsgroups but could not find a solution.
Any Ideas,
Marion



Relevant Pages

  • Re: AutoEnrollment DCs
    ... If domain controllers need access to this interface to request certificates ... the Domain Computers security group. ... Automatic certificate enrollment for local system failed to enroll for one ... Domain Controller certificate. ...
    (microsoft.public.windows.server.active_directory)
  • Certificate Authority issue.
    ... The new install of our SBS2003 machine has gone fairly well except for a few ... The error reads "Automatic certificate enrollment for local system failed to ... I'm using Jeff's swing ...
    (microsoft.public.windows.server.sbs)
  • Re: LDAP over SSL
    ... either rebooting the machine OR executing GPUPDATE /FORCE should kick the enrollment process ... 'All Domain Controllers in the forest will automatically enroll for and ... install the appropriate certificate' ... The domain controller certificate is present on the DC where I have ...
    (microsoft.public.windows.server.active_directory)
  • Re: AutoEnrollment DCs
    ... CERTSVC_DCOM_ACCESS security group? ... domain controllers need access to this interface to request certificates ... the server holding the certificate? ... Automatic certificate enrollment for local system failed to renew one ...
    (microsoft.public.windows.server.active_directory)
  • Re: Event ID 13 logged on Domain Controllers
    ... | The following error is being repeativly logged on both Domain Controllers. ... | this error message would be appreciated. ... | Automatic certificate enrollment for local system failed to enroll for one ... | Domain Controller certificate. ...
    (microsoft.public.windows.server.general)