Link to home
Start Free TrialLog in
Avatar of HOPE-IT
HOPE-ITFlag for United States of America

asked on

AutoEnrollment error with Event ID 13

Getting this on my new DC that has SP1 for Windows 2003 on it.

Automatic cert enrollment for local system failed to enroll for one Dc cert from cert authority xxx.xxx.com  Access Denied.
Another CA will be contacted.

Any ideas?
ASKER CERTIFIED SOLUTION
Avatar of kfiliks
kfiliks

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of HOPE-IT

ASKER

What do you mean I have to add in the access group?
Avatar of kfiliks
kfiliks

You have installed SP1 on your server running PDC and Certificate Services, right?

Thouse groups are created automatickly.

Are you using the Certificate Services at all, or is it just there.

If you not using this then remove it, if you are then this need to be fixed.

Run command prompt and issue these 3 commands
Press ENTER after each command.

1.) certutil –setreg SetupStatus –SETUP_DCOM_SECURITY_UPDATED_FLAG

2.) net stop certsvc

3.) net start certsvc