How to rename a Server 2003 Certificate Authority

Hi

Our Certificate Issued By Business Name shown on our Windows Server 2003 Certificate Authority needs amending (Ltd to LLP)

How can I do this as there seems to be no way of renaming it using its console

This name does not appear in our AD or DNS

As far as I know it just appears on our SSL Certificate used by OWA
ARamptonAsked:
Who is Participating?

Improve company productivity with a Business Account.Sign Up

x
 
Krzysztof PytkoConnect With a Mentor Senior Active Directory EngineerCommented:
Unfortunately this is also set up during CA configuration and cannot be change later (also issuing name). You can set up another CA, there is no problem, they can coexist together. After that you need to issue certficates to your clients from your new CA. When all of them would have new certs, you can deactivate the old one by uninstalling CA role from a server.

Important! During new CA setup, do not use the old one as parent because everything still will be based on the old data :)
I don't know what is your requirement, but you have 2 choices for that

- Standalone Root CA
- Enterprise Root CA

Krzysztof
0
 
Krzysztof PytkoSenior Active Directory EngineerCommented:
You cannot change server name with CA role installed. It would affect all of issued certificates and they would be rejected.
You need to:

1) install new CA with new name and issue certificates once again
2) remove CA role from server, rename it, install CA once again and issue certificates

in both cases, you have to issue certificate from the beginning.

Regards,
Krzysztof
0
 
ARamptonAuthor Commented:
Thanks for the choices

I can't remember how our consultant installed our Certificate Authority originally

I am not renaming the server which hosts our Certificate Authority, I just want to change the Issuing Name

Are you saying the only time the Issuing Name is defined is when the CA is installed?

Can I add a CA to another server using a new name before removing the existing CA or have both in existence?

Regards AndyR
0
 
Krzysztof PytkoSenior Active Directory EngineerCommented:
Hi,

and progress in this case? :)

Krzysztof
0
 
ARamptonAuthor Commented:
I have not yet created a new Certificate to see how easy it is to do
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.