Sign in
Windows PKI blog
News and information for public key infrastructure (PKI) and Active Directory Certificate Services (AD CS) professionals
Translate This Page
Translate this page
Powered by
Microsoft® Translator
Options
Email Blog Author
RSS for posts
Atom
RSS for comments
OK
Search Blogs
Tags
A Certificate could not be created
Active Directory Domain Services
AD CS
AD CS documentation updates
architecture
Backup Private Keys ADCS 2008 R2 p12 CA
CA
CA maintenance
certificate
certificate requests
certificates
Certification authority
certifiication authority
certutil
Configuration
CRL
cryptography
Data Recvoery
Homeland Security Presidential Directive 12
HSPD-12
key management
PKI
setup
SHA2 NIST SP800-78-2 SP800-57
whitepaper
Archive
Archives
May 2013
(1)
March 2013
(3)
December 2012
(3)
October 2012
(1)
August 2012
(1)
July 2012
(1)
June 2012
(3)
May 2012
(2)
April 2012
(2)
March 2012
(2)
February 2012
(1)
January 2012
(2)
December 2011
(1)
October 2011
(3)
September 2011
(2)
August 2011
(3)
June 2011
(2)
March 2011
(2)
February 2011
(3)
September 2010
(1)
August 2010
(3)
June 2010
(2)
May 2010
(2)
April 2010
(2)
March 2010
(2)
February 2010
(1)
January 2010
(2)
December 2009
(2)
November 2009
(2)
October 2009
(2)
September 2009
(7)
August 2009
(10)
July 2009
(1)
June 2009
(2)
May 2009
(2)
April 2009
(2)
February 2009
(1)
January 2009
(4)
December 2008
(2)
October 2008
(3)
September 2008
(1)
July 2008
(1)
June 2008
(1)
May 2008
(1)
April 2008
(1)
February 2008
(2)
January 2008
(1)
November 2007
(1)
October 2007
(1)
September 2007
(1)
August 2007
(2)
July 2007
(2)
May 2007
(2)
April 2007
(1)
February 2007
(4)
January 2007
(1)
December 2006
(3)
November 2006
(1)
TechNet Blogs
>
Windows PKI blog
Posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Windows PKI blog
Whitepaper “HSPD-12 Logical Access Authentication and Active Directory Domains”
Posted
over 3 years ago
by
MS2065 [MSFT]
0
Comments
This document explains the interdependencies between Active Directory Domain Services (AD DS) and Public Key Infrastructure (PKI) related to Homeland Security Presidential Directive 12 (HSPD-12) smart card logon. Topics concerning the Federal PKI Common...
Windows PKI blog
Windows CA Performance Numbers
Posted
over 3 years ago
by
oshekel
0
Comments
Below are some numbers we have measured when testing the Windows CA in our lab environment. Note that the numbers will change and depends on many factors (network topology, request types, other server workloads, etc.) However, the numbers are a good...
Windows PKI blog
Clustered Certification Authority maintenance tasks
Posted
over 3 years ago
by
MS2065 [MSFT]
0
Comments
The colleagues from the AskDS blog posted a quite valuable article about Clustered CA maintenance tasks .
Windows PKI blog
Server 2008 R2 ADCS Migration Guide Beta
Posted
over 4 years ago
by
ltalbot
0
Comments
The beta version of the new 2008 R2 ADCS Migration Guide is now available at http://technet.microsoft.com/en-us/library/ee126140(WS.10).aspx . The guide describes the necessary steps for a successful migration of enterprise or standalone CAs from Windows...
Windows PKI blog
AD Schema Requirements for Windows PKI features
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
1
Comments
There have been a number of questions about Active Directory (AD) schema requirements for the Windows PKI features so I decided this deserves a blog post. Cheat sheet 1. Version 2 and Version 3 certificate templates require Windows Server 2003 (version...
Windows PKI blog
How Certificates Are Created
Posted
over 4 years ago
by
MS2065 [MSFT]
1
Comments
The following text is a simple copy/paste from the TechNet article How Certificates Work (section How Certificates are Created ). Why am I posting this information to the blog? Quite simple: I recognize that it is often overlooked that the key pair generation...
Windows PKI blog
Certificate Revocation Checking Whitepaper
Posted
over 4 years ago
by
Yogesh Mehta
0
Comments
A whitepaper on Certificate Revocation Checking in Windows Vista and Windows Server 2008 has been publshed on Technet here - http://technet.microsoft.com/en-us/library/ee619730(WS.10).aspx Topics in this whitepaper include: · What’s new in Windows...
Windows PKI blog
Certificate Validation on Windows XP with Entrust SSP Issued HSPD-12 Certificates
Posted
over 4 years ago
by
oshekel
0
Comments
On May 9th, 2009 Entrust Managed Services (provider of HSPD-12 certificates) performed a key update ceremony on the Entrust Managed Services Root and SSP certification authorities. HSPD-12 certificates issued after May 9th, 2009 will not work on the Windows...
Windows PKI blog
BranchCache Deployment Guide for Windows Server 2008 R2 and Windows 7
Posted
over 4 years ago
by
oshekel
1
Comments
A new deployment guide was published on Windows7 BranchCache. It covers the PKI requirements for this feature along with other deployment procedures. The full guide can be found here: BranchCache Deployment Guide for Windows Server 2008 R2...
Windows PKI blog
Introducing Certificate Template API
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
3
Comments
WARNING: USE OF THE SAMPLE CODE PROVIDED IN THIS ARTICLE IS AT YOUR OWN RISK. Microsoft provides this sample code "as is" without warranty of any kind, either express or implied, including but not limited to the implied warranties of merchantability and...
Windows PKI blog
Using VBScript to install CA on WS2008R2 server core
Posted
over 4 years ago
by
shawncor
0
Comments
In my previous post I provided a script used for setup and installation of a CA using VBScript. The same script is capable of installing a CA on server core, where there is no UI available for installing. With the script and a few possible additional...
Windows PKI blog
Automated CA installs using VB script on Windows Server 2008 and 2008R2 [UPDATED]
Posted
over 4 years ago
by
shawncor
13
Comments
Starting with Windows Server 2008 the CA product team introduced a set of COM objects that can be used to control the installation of CAs. Using VBScript you can quickly automate the setup and installation of a CA.Below is a script that is being used...
Windows PKI blog
Official Microsoft Team Blogs / Microsoft Blogs
Posted
over 4 years ago
by
MS2065 [MSFT]
0
Comments
If you are interested in reading more official Microsoft Team blogs, see http://blogs.technet.com/blogms/pages/directory-of-microsoft-team-blogs.aspx . This page is a great collection of valuable blog information.
Windows PKI blog
Certificate Enrollment Web Services Whitepaper
Posted
over 4 years ago
by
JField
0
Comments
The Windows Server 2008 R2 Certificate Enrollment Web Services Whitepaper has been posted to the download center: you can download it here . This is just the initial document release for RTM. We plan to publish the content to various Technet locations...
Windows PKI blog
How to get request statistics by template in PowerShell
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
0
Comments
I’ve been working with our support folks helping one of our customers. One of the things we wanted to learn about the environment is how many requests have been made for each certificate template that they issue. We have come up with this PowerShell script...
Windows PKI blog
Active Directory Certificate Services Features by SKU
Posted
over 4 years ago
by
JField
0
Comments
We’ve had many requests for what services and features are available in what Windows Server version and SKU. The TechNet Wiki article Active Directory Certificate Services Overview has this information under Features of AD CS in Different OS...
Windows PKI blog
Vishal’s nuggets
Posted
over 4 years ago
by
MS2065 [MSFT]
0
Comments
Subscribe to Vishal’s blog at http://blogs.technet.com/vishalagarwal/ for real good certificate and CA management scripts. More posts to come …
Windows PKI blog
Cross-forest certificate enrollment white paper update
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
0
Comments
We’ve just updated the Beta version of the cross-forest certificate enrollment white paper. In addition to fixing some of the bugs we had in the previous version, we’ve added sections around supporting selective authentication, enrollment web pages, and...
Windows PKI blog
Creating self-signed certificates with a script
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
0
Comments
Here is a great post by one of my colleagues on how to create a self-signed certificate using PowerShell: http://blogs.technet.com/vishalagarwal/archive/2009/08/22/generating-a-certificate-self-signed-using-powershell-and-certenroll-interfaces.aspx .
Windows PKI blog
Populate Subject Name for Offline Templates on Renew
Posted
over 4 years ago
by
andrew.bernat
2
Comments
Offline templates are certificate templates that require the subject name to be part of the certificate request. The certificate authority will use the subject name supplied in the request as the subject name of the certificate to issue. This is different...
Windows PKI blog
Updated Network Device Enrollment Service (aka SCEP) white paper
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
1
Comments
I have just updated this paper. Here is the latest draft: http://go.microsoft.com/fwlink/?LinkID=93875 . In this paper, we cover Network Device Enrollment Service that allows certificate enrollment through the Simple Certificate Enrollment Protocol (...
Windows PKI blog
Extended Validation support for websites using internal certificates
Posted
over 4 years ago
by
MS2065 [MSFT]
0
Comments
The Active Directory team has published a new blog post how to configure Extended Validation support for websites using internal certificates .
Windows PKI blog
CA Performace testing
Posted
over 4 years ago
by
Alex Radutskiy [MSFT]
0
Comments
One of our collegues posted an interesting blog entry on CA scalability testing: http://blogs.technet.com/wincat/archive/2009/08/10/scale-testing-the-world-s-largest-pki-all-running-on-ws08r2-and-hyper-v.aspx . Alex Radutskiy Program Manager, Windows...
Windows PKI blog
AD CS Installation is Crashing on x64 Platform
Posted
over 4 years ago
by
dedsMilan
3
Comments
The following problem affects a Certification authority running on the 64-bit edition of Windows Server 2008 and Windows Server 2008 R2. The problem does not occur on x86 (32-bit) platform of both operating systems. When installing a subordinate enterprise...
Windows PKI blog
Understanding Key Archival
Posted
over 4 years ago
by
MS2065 [MSFT]
0
Comments
It came to my attention that there is little understanding regarding the relationship between archived private keys and Key Recovery Agent (KRA) certificates. With this blog post I would like to clarify what you can expect from the recovery mechanism...
Page 3 of 5 (120 items)
1
2
3
4
5