Issuing Certificates in different AD Forests


i have requirement design ca infra. have multiple ad forests , looking issue certificates various devices within each of these forests. can still build ent sub-ca , issues certificates in different ad forests , devices not part of domain. or should build standalone sub-ca? 

also these ad forests spread in various datacenters round world, should design 1 ca server per datacenter? advise how go about.

you may @ cross-forest enrollment: http://technet.microsoft.com/en-us/library/ff955842(v=ws.10).aspx

my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
check out new: powershell fciv tool.




Windows Server  >  Security



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client