Re: enabling LDAP over SSL: Enterprise CA in separate AD tree
- From: Brian Komar <bkomar@xxxxxxxxxxxxxxxxx>
- Date: Fri, 18 Aug 2006 12:00:32 -0500
In article <1155917238.651109.40270@xxxxxxxxxxxxxxxxxxxxxxxxxxxx>,
mtw@xxxxxxx says...
This is not really the solution...
So, anyone have any things for me to try?
The trick was to log into a DC in domain B as an Enterprise Admin and
set up a subordinate enterprise CA. After that I could get
certificates and enable LDAP over SSL
You just need to change permissions on the Domain COntroller or Domain
Controller AUthentication certificate templates to allow each domain's
Domain Controllers group the Read, enroll (and maybe Autoenroll for v2
templates) permissions
Brian
.
- Follow-Ups:
- References:
- Prev by Date: Re: enabling LDAP over SSL: Enterprise CA in separate AD tree
- Next by Date: Re: Adding a User from One Domain to a Group in Another Domain
- Previous by thread: Re: enabling LDAP over SSL: Enterprise CA in separate AD tree
- Next by thread: Re: enabling LDAP over SSL: Enterprise CA in separate AD tree
- Index(es):
Relevant Pages
|