Solved

renew trusted root certification authorities for domain controller

Posted on 2013-11-22
4
2,759 Views
Last Modified: 2013-11-25
Hello,
I noticed today that our Trusted root certificate on the domain controller expired. My users get an error when trying to connect to our wireless network (Aruba), I called Aruba support they could not find an issue. the error users get is Cannot authenticate because the certificate cannot be found on this computer, I am assuming the the expired certificate is the issue, I could not find a way to renew the certificate for renew trusted root certification authorities.
Is the error my users get related to the expired certificate, if yes how can I renew the certificate?
Thank you
0
Comment
Question by:rfinaly
4 Comments
 

Expert Comment

by:dlbrody69
ID: 39670798
yes it is most likely a cert issue. Can you attach it here so we can look at it and its chain?
0
 
LVL 35

Accepted Solution

by:
Mahesh earned 500 total points
ID: 39671165
Your comment
"I noticed today that our Trusted root certificate on the domain controller expired"

Certificate Services enforces a rule that a CA never issues a certificate to be valid beyond the expiration date of its own certificate. Therefore, when a CA's certificate reaches the end of its validity period, all certificates it has issued will also expire.
http://technet.microsoft.com/en-us/library/cc740209(v=ws.10).aspx

In your case root CA certificate has been expired.
if you using windows based CA to issue client certificate, then
You need to renew trusted root certificate 1st on CA server and distribute the same to all clients throug GPO then,
you need to issue or renew client certificates also.

http://technet.microsoft.com/en-us/library/cc780374(v=ws.10).aspx - renew root ca cert
http://technet.microsoft.com/en-us/library/cc776691(v=ws.10).aspx - renew subordinate ca cert
http://technet.microsoft.com/en-us/library/cc772491.aspx - add trusted root certificate to GPO for auto enrollment on clients

Mahesh
1
 
LVL 9

Expert Comment

by:VirastaR
ID: 39671699
0
 

Author Closing Comment

by:rfinaly
ID: 39676412
thank you
0

Featured Post

The problems with reply email signatures

Do you wish that you could place an email signature under a reply? Well, unfortunately, you can't. That great Exchange/Office 365 signature you've created will just appear at the bottom of an email chain. What a pain! Is there really no way to solve this? Well, there might be...

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Alternative access for remote users 6 86
Extend a Partition 6 32
Remote Desktop Certificates 6 45
knowing when local account expires (Windows Server OS-DOS) 5 38
I was asked if I could set up a fax machine so that incoming faxes were delivered to people's Exchange inboxes and so that they could send faxes from their desktops without needing to print the document first.  I knew it was possible but I had no id…
Possible fixes for Windows 7 and Windows Server 2008 updating problem. Solutions mentioned are from Microsoft themselves. I started a case with them from our Microsoft Silver Partner option to open a case and get direct support from Microsoft. If s…
This tutorial will give a short introduction and overview of Backup Exec 2012 and how to navigate and perform basic functions. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as conne…
This tutorial will show how to configure a single USB drive with a separate folder for each day of the week. This will allow each of the backups to be kept separate preventing the previous day’s backup from being overwritten. The USB drive must be s…

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

16 Experts available now in Live!

Get 1:1 Help Now