Solved

How to rename a Server 2003 Certificate Authority

Posted on 2011-09-05
5
469 Views
Last Modified: 2012-05-12
Hi

Our Certificate Issued By Business Name shown on our Windows Server 2003 Certificate Authority needs amending (Ltd to LLP)

How can I do this as there seems to be no way of renaming it using its console

This name does not appear in our AD or DNS

As far as I know it just appears on our SSL Certificate used by OWA
0
Comment
Question by:ARampton
  • 3
  • 2
5 Comments
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 36484309
You cannot change server name with CA role installed. It would affect all of issued certificates and they would be rejected.
You need to:

1) install new CA with new name and issue certificates once again
2) remove CA role from server, rename it, install CA once again and issue certificates

in both cases, you have to issue certificate from the beginning.

Regards,
Krzysztof
0
 

Author Comment

by:ARampton
ID: 36484649
Thanks for the choices

I can't remember how our consultant installed our Certificate Authority originally

I am not renaming the server which hosts our Certificate Authority, I just want to change the Issuing Name

Are you saying the only time the Issuing Name is defined is when the CA is installed?

Can I add a CA to another server using a new name before removing the existing CA or have both in existence?

Regards AndyR
0
 
LVL 39

Accepted Solution

by:
Krzysztof Pytko earned 500 total points
ID: 36495334
Unfortunately this is also set up during CA configuration and cannot be change later (also issuing name). You can set up another CA, there is no problem, they can coexist together. After that you need to issue certficates to your clients from your new CA. When all of them would have new certs, you can deactivate the old one by uninstalling CA role from a server.

Important! During new CA setup, do not use the old one as parent because everything still will be based on the old data :)
I don't know what is your requirement, but you have 2 choices for that

- Standalone Root CA
- Enterprise Root CA

Krzysztof
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 36708311
Hi,

and progress in this case? :)

Krzysztof
0
 

Author Closing Comment

by:ARampton
ID: 37064035
I have not yet created a new Certificate to see how easy it is to do
0

Featured Post

NAS Cloud Backup Strategies

This article explains backup scenarios when using network storage. We review the so-called “3-2-1 strategy” and summarize the methods you can use to send NAS data to the cloud

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

by Batuhan Cetin In this article I will be guiding through the process of removing a failed DC metadata from Active Directory (hereafter, AD) using the ntdsutil tool in a Windows Server 2003 environment. These steps are not necessary in a Win…
I guess it is not common knowledge to most Wintel engineers/administrators: If you have an SNMP-based monitoring system in your environment (and it's common to have SNMP or Syslog) it's reasonably easy to enable monitoring of the Windows Event logs,…
Two types of users will appreciate AOMEI Backupper Pro: 1 - Those with PCIe drives (and haven't found cloning software that works on them). 2 - Those who want a fast clone of their boot drive (no re-boots needed) and it can clone your drive wh…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question