New internal CA
i had old internal enterprise ca1 issued computer certificates , domain controller certificates.
now installed brand new enterprise ca2 new key etc.
i removed certificate templates ca1 , added them ca2
now see clients getting new computer certificates ca2 domain controllers not trying new certificates.
am or domain in danger when turn off ca1 ?
what best steps can now, cannot use reenroll certificate holders cause computer template
my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
windows pki reference: on technet wiki
Windows Server > Security
Comments
Post a Comment