Windows Server 2012: Active Directory Certificate Services

Windows Server 2012: Active Directory Certificate Services

1) Server Manager > Manage > Add Roles and Features > Server Selection - Name: LON-CA1 | IP Address: 172.16.0.40 | Operating System: Microsoft Windows Server 2012 R2 > Server Roles - (x) Active Directory Certificate Services > Add Features > AD CS - Role Services - (x) Certificate Authority | (x) Certificate Enrollment Policy Web service | (x)  Certificate Enrollment Web service | (x) Certification Authority Web Enrollment | (x) Network Device Enrollment Service | (x) Online Responder > Add Features > Next > Install >

1) i) Results - Configure Active Directory Certificate Services on the destination server >

1) ii) AD CS Configuration - Credentials - Credentials: LON-CA1\Administrator >  AD CS Configuration - Role Services - Select Role services to configure - (x) Certification Authority > Next > Setup Type - (x) Standalone CA > CA Type - (x) Root CA > Private Key - (x) Create a new private key > Private key - Cryptography - Select a cryptograhic provider: RSA#Microsoft Software Key Storage Provider | Key Length: 4096 | Select the hash algorithm for signing certificates issued by this CA: SHA1 // Choose best option > Private key - CA Name:- Common Name for this CA: LON-CA1-CA | Preview of distinguished name: CN=LON-CA1-CA > Private key - Validity Period: 5 Years > Configure > Close >

Comments