How to remove an expired certificate from a RootCA


hi...

i have windows 2008 r2 rootca has 2 certificates on it. 1 expired certificate ( certificate #0 ) , current / certificate ( certificate #1 ). both being deployed , becoming issue on workstations. can give me procedure remove certificate #0 rootca?


thanks... frank

on ca server (or ca management tools installed) run pkiview.msc console. right-click on enterprise pki node, , select manage ad containers. switch certification authorities tab , remove expired ca certificate. then, switch aia tab , remove expired ca certificate (if there expired certificate). after next group policy refresh, expired certificate should removed clients.

my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
check out new: powershell fciv tool.



Windows Server  >  Security



Comments

Popular posts from this blog

CRL Revocation always failed

Failed to query the results of bpa xpath

0x300000d errors in Microsoft Remote Desktop client