TechNet
Products
IT Resources
Downloads
Training
Support
Products
Windows
Windows Server
System Center
Microsoft Edge
Office
Office 365
Exchange Server
SQL Server
SharePoint Products
Skype for Business
See all products »
Resources
Channel 9 Video
Evaluation Center
Learning Resources
Microsoft Tech Companion App
Microsoft Technical Communities
Microsoft Virtual Academy
Script Center
Server and Tools Blogs
TechNet Blogs
TechNet Flash Newsletter
TechNet Gallery
TechNet Library
TechNet Magazine
TechNet Wiki
Windows Sysinternals
Virtual Labs
Solutions
Networking
Cloud and Datacenter
Security
Virtualization
Updates
Service Packs
Security Bulletins
Windows Update
Trials
Windows Server 2016
System Center 2016
Windows 10 Enterprise
SQL Server 2016
See all trials »
Related Sites
Microsoft Download Center
Microsoft Evaluation Center
Drivers
Windows Sysinternals
TechNet Gallery
Training
Expert-led, virtual classes
Training Catalog
Class Locator
Microsoft Virtual Academy
Free Windows Server 2012 courses
Free Windows 8 courses
SQL Server training
Microsoft Official Courses On-Demand
Certifications
Certification overview
Special offers
MCSE Cloud Platform and Infrastructure
MCSE: Mobility
MCSE: Data Management and Analytics
MCSE Productivity
Other resources
Microsoft Events
Exam Replay
Born To Learn blog
Find technical communities in your area
Azure training
Official Practice Tests
Support options
For business
For developers
For IT professionals
For technical support
Support offerings
More support
Microsoft Premier Online
TechNet Forums
MSDN Forums
Security Bulletins & Advisories
Not an IT pro?
Microsoft Customer Support
Microsoft Community Forums
Sign in
Home
Library
Wiki
Learn
Gallery
Downloads
Support
Forums
Blogs
Resources For IT Professionals
United States (English)
Россия (Pусский)
中国(简体中文)
Brasil (Português)
Skip to locale bar
Get this Tag RSS feed
Translate this page
Powered by
Microsoft® Translator
Popular Tags
Active Directory
AD
AD DS
adfs
ASP.NET
azure
BizTalk
BizTalk Server
BizTalk Server 2010
C#
Candidate for deletion
certification
cloud
core docs
de-DE
EAA
Ed Price
Ed's Stub Pages
en-US
ESA
es-ES
Excel
Exchange
Exchange 2010
fa-IR
Fernando Lugao Veltem
FIM
FIM 2010
FIM Resources
FIM-HELP
forefront
forums
fr-FR
Gokan Ozcifci
has code
has comment
has comments
has image
has Images
has Other Languages
has See Also
Has Table
Has TOC
Horizon_Net
How To
Hyper-V
id-ID
IIS
Italian Wiki Articles
it-IT
ja-JP
Jordano Mazzoni
Link Collection
Luciano Lima
Luigi Bruno
Lync Server 2010
MIISILMFIM MACAULAY
Multi Language Wiki Articles
needs work
operations manager
Pirated Content
Portal
Português Brasil
PowerShell
pt-BR
security
SharePoint
SharePoint 2010
SharePoint 2013
SharePoint Pirate
Small Basic
solucionando problemas
SQL Server
SQL Server 2012
stub
System Center
System Center 2012
TechNet Guru
TechNet Wiki
TechNet Wiki Featured Article
tonyso
Translated into Japanese
troubleshooting
tr-TR
vídeo
Video
Virtualization
VMM
Wiki
Windows
Windows 7
Windows 8
Windows Azure
Windows Server
Windows Server 2003
Windows Server 2008
Windows Server 2008 R2
Windows Server 2012
yottun8
اکتیو دایرکتوری
Browse by Tags
>
TechNet Articles
>
All Tags
>
PKI
Tagged Content List
Wiki Page:
Public Key Infrastructure Design Guidance
Naomi N
Before you configure a Public Key Infrastructure (PKI) and certification authority (CA) hierarchy, you should be aware of your organizations security policy and certificate practice statement (CPS). If your organization does not have such policy statements, you should consider creating them. For more...
on
4 Jul 2013
Wiki Page:
How to rename a Certificate Authority
Nimit210984
Applies to: Windows Server 2003, Windows Server 2008, Windows Server 2008 R2, and Windows Server 2012 Certification Authority Naming Rules The certification authority (CA) name should never be the same as the server's computer name (NetBIOS or DNS / hostname). If you use non-Latin characters...
on
4 Jul 2013
Wiki Page:
Active Directory Certificate Services (AD CS): Error: "In order to complete certificate enrollment, the Web site for the CA must be configured to use HTTPS authentication"
Kurt L Hudson MSFT
After you install Certification Authority Web Enrollment pages, clients may see a warning message indicating that HTTPS must be used. Table of Contents Error Cause Resolution Implementing SSL on a Web site in the domain with an Enterprise CA Configure an appropriate certificate template for SSL...
on
28 Jun 2013
Wiki Page:
CA Certificate shows Unknown Error for a subordinate CA in Enterprise PKI (PKIView.msc)
Kurt L Hudson MSFT
Applies to all Windows operating system versions capable of running Enterprise PKI (PKIView) In a multitier PKI hierarchy, such as a two-tier or three tier PKI, the Enterprise PKI application will display "Unknown Error" for the CA certificate of a subordinate certification authority...
on
25 Jun 2013
Wiki Page:
Asking questions or providing feedback about AD CS or PKI content
Kurt L Hudson MSFT
You can ask technical questions about AD CS, PKI, or provide feedback about a document on the Security Forum . Please, remember to search the forum for your answer or issue before creating a new post. If you are providing feedback about a specific document, please, begin your forum post with Content...
on
18 Jun 2013
Wiki Page:
AD CS and PKI Step-by-Steps, Labs, Walkthroughs, HowTo, and Examples
Carsten Siemens
This article is an evolving collection of Active Directory Certificate Services (AD CS) and Public Key Infrastructure (PKI) step-by-step information. The links in this article should take you to places where you can perform or see the actual steps for deploying or administering a PKI using AD CS. ...
on
15 May 2013
Wiki Page:
Reduce the Operational Risk When Defending the Open Network with Microsoft PKI
Carsten Siemens
Table of Contents Introduction Protecting an Open Network Limitations of Traditional Network Security Security Solution Requirements Solution: Microsoft PKI How Microsoft PKI Works Certificate services IPSec support Encrypted e-mail communication Wireless security Centralized management features Scenarios...
on
15 May 2013
Wiki Page:
Troubleshooting PKI Problems on Windows
Carsten Siemens
Other Resources Security Developer Center Cryptography Topics on MSDN Follow us on Twitter CAPI2 Diagnostics is a feature first introduced in Microsoft® Windows® Vista. This feature provides administrators with an ability to troubleshoot PKI problems by collecting detailed...
on
15 May 2013
Wiki Page:
Windows XP: Certificate Status and Revocation Checking
Kurt L Hudson MSFT
Applies To Windows XP Currently this Applies to Windows XP only. The article How Certificate Revocation Works applies to Windows Vista, Windows Server 2008, Windows 7, and Windows Server 2008 R2. The goal is to integrate the two articles here in the future. Table of Contents Introduction...
on
7 May 2013
Wiki Page:
How to Generate a Self-Signed Certificate Using PowerShell
Richard Mueller
Overview There may come a time when a certificate is needed for testing purposes, and a certification authority (CA) is not readily available. The sample script below provides the following: -Self-signed certificates in the Local Machine Personal store -2048 lenth private keys marked exportable...
on
23 Apr 2013
Wiki Page:
Active Directory Certificate Services Performance Reports
Kurt L Hudson MSFT
When IT professionals are designing a public key infrastructure (PKI) and deploying certification authorities (CA), a common question is to ask is "What type of performance can I expect?" Of course, this is a difficult question to answer because the actual performance of the computer, the...
on
16 Apr 2013
Wiki Page:
Implementing Certificate Enrollment Web Services in Windows Server® 2012 That Uses an Issuing CA With Spaces in the Name
Richard Mueller
In Windows Server 2012, if you implement Certificate Enrollment Web Services to target an Issuing certification authority (CA) that has spaces in the name, some additional configuration is required: You must modify the URI in the Application Settings for the Certificate Enrollment Web Services...
on
6 Apr 2013
Wiki Page:
AD DS Site Awareness for AD CS and PKI Clients
Kurt L Hudson MSFT
Table of Contents Enabling site awareness on a CA Client selection of a CA Applies to Windows®8 and Windows Server® 2012 Certificate services in Windows® 8 and Windows Server® 2012 can be configured to utilize Active Directory Domain Service (AD DS) site s to help optimize certificate services...
on
20 Mar 2013
Wiki Page:
Large CRLs: What is Added to a Certificate Revocation List (CRL)?
Browse Organic
This article discusses the reasons a certificate revocation list (CRL) can become large. The contents of this article include the following: Table of Contents What makes large CRL? Additional References What makes large CRL? There is really one item that makes the CRL grow: revoked certificates...
on
14 Mar 2013
Wiki Page:
Certificates Help
Ed Price - MSFT
This topic extends the help provided for certificates in Windows. Table of Contents Certificate Path Validation Settings Stores tab Trusted Publishers tab Network Retrieval tab Revocation tab Domain Group Policy Credential roaming Certificate autoenrollment Certificate path validation Certificate...
on
13 Feb 2013
Wiki Page:
Test Lab Guide: Converting a Single-Tier PKI CA Hierarchy to a Two-Tier PKI Hierarchy
Ed Price - MSFT
Under construction: This guide is a work in progress and is not complete. The original author will remove this note when the guide is ready for use. Applies to Windows Server 2008 R2, Windows 7 **** NEED TO INCORPORATE ADVICE FROM http://blogs.technet.com/b/pki/archive/2012/01/27/steps-needed...
on
13 Feb 2013
Wiki Page:
AD: Certification Authority Web Enrollment Configuration Failed 0x80070057 (WIN32: 87)
Ed Price - MSFT
Table of Contents Error Cause Resolution Error If you run into the following error when trying to install CA Web Enrollment after migrating or restoring a CA: Certification Authority Web Enrollment: Configuration Failed Active Directory Certificate Services setup failed with the following...
on
13 Feb 2013
Wiki Page:
Running AD CS on Server Core
Richard Mueller
Applies to Windows Server 2012 RC There are several changes from earlier operating systems regarding the installation of roles on Server Core. For example, you can install and configure Windows Server 2012 RC using the graphical user interface (GUI) and then switch to the Server Core option. You...
on
12 Feb 2013
Wiki Page:
Active Directory Certificate Services SMTP Exit Module for Windows Server 2008 R2 Example
Kurt L Hudson MSFT
The following is a Windows Server 2008 and Windows Server 2008 R2 version of the SMTP Exit Module posted at http://technet.microsoft.com/en-us/library/cc773129(WS.10).aspx Sample Configuration Batch File The following batch file can be used as a sample to configure the SMTP exit module...
on
7 Feb 2013
Wiki Page:
Step by Step Guide - Single Tier PKI Hierarchy Deployment
Yagmoth555
The purpose of this Step-by-Step Guide is to enable you to create a single-tier public key infrastructure (PKI) hierarchy using Windows Server® 2008 R2 Active Directory Certificate Services (AD CS). This guide contains instructions for installation/configuration of Windows Server 2008 R2 Enterprise...
on
7 Feb 2013
Wiki Page:
AD CS Remote Server Management
Yagmoth555
Applies to: Windows Server 2012 RC There are multiple methods for managing AD CS remotely using the following built-in tools and methods: Remote Server Administration Tools for Windows 8 Remote Server Administration Tools for Windows Server 2012 In Server Manager, click Manage , and...
on
7 Feb 2013
Wiki Page:
Errata in Windows Server® 2008 PKI and Certificate Security from MS Press
Yagmoth555
This article has been created in response to customer issues that have been brought up to Microsoft Support, forums, and other community connection points. The official location to submit errata for the Windows Server® 2008 PKI and Certificate Security book by Brian Komar is on the O'Reilly Web...
on
5 Feb 2013
Wiki Page:
Hardware Security Module (HSM)
Richard Mueller
A hardware security module (HSM) is a hardware encryption device that's connected to a server at the device level, typically using PCI, SCSI, serial, or USB interfaces. An HSM is a dedicated hardware device that is managed separately from the operating system. These modules provide a secure hardware...
on
2 Feb 2013
Wiki Page:
AD CS PKI Design
Richard Mueller
Active Directory Certificate Services (AD CS) Public Key Infrastructure (PKI) Design Guide The Windows Server® product line provides a variety of secure applications and business scenarios based on the use of digital certificates. Before you can use digital certificates, however, you need to design...
on
15 Jan 2013
Wiki Page:
Offline Root Certification Authority (CA)
Ed Price - MSFT
A root certification authority (CA) is the top of a public key infrastructure (PKI) and generates a self-signed certificate. This means that the root CA is validating itself (self-validating). This root CA could then have subordinate CAs that effectively trust it. The subordinate CAs receive a certificate...
on
14 Jan 2013
Page 2 of 3 (64 items)
1
2
3
Can't find it? Write it!
Post an Article