How to remove an expired certificate from a RootCA
hi... i have windows 2008 r2 rootca has 2 certificates on it. 1 expired certificate ( certificate #0 ) , current / certificate ( certificate #1 ). both being deployed , becoming issue on workstations. can give me procedure remove certificate #0 rootca? thanks... frank on ca server (or ca management tools installed) run pkiview.msc console. right-click on enterprise pki node, , select manage ad containers. switch certification authorities tab , remove expired ca certificate. then, switch aia tab , remove expired ca certificate (if there expired certificate). after next group policy refresh, expired certificate should removed clients. my weblog: http://en-us.sysadmins.lv powershell pki module: http://pspki.codeplex.com check out new: powershell fciv tool. Windows Server > ...