Solved

ull backup of all certs certutil where, not exists

Posted on 2014-01-23
1
488 Views
Last Modified: 2014-02-11
Need to have a full backup of all certs

C:\Users\jazz>certutil -ping
CertUtil: -ping command FAILED: 0x80070002 (WIN32: 2)
CertUtil: The system cannot find the file specified.

W2008R2
0
Comment
Question by:jazzIIIlove
1 Comment
 
LVL 29

Accepted Solution

by:
Rich Weissler earned 500 total points
ID: 39804180
I believe the ping verb in certutil requires a destination.
C:\Users\razmus.TEST>certutil -ping localca
Connecting to localca ...
Server "test-LOCALCA-CA" ICertRequest2 interface is alive (78ms)
CertUtil: -ping command completed successfully.

Open in new window


If you have access to the console of the CA server, the you can perform a 'certutil -backup <destinationfolder>' to backup the CA, which will get the certificates.  (It will ask for a password on the backup itself.)

C:\temp\cabackup>certutil -backup c:\temp\cabackup
Enter new password:
Confirm new password:
Backed up keys and certificates for LOCALCA.test.local\test-LOCALCA-CA to c:\tem
p\cabackup\test-LOCALCA-CA.p12.
Full database backup for LOCALCA.test.local\test-LOCALCA-CA.
Backing up Database files: 100%
Backing up Log files: 100%
Truncating Logs: 100%
Backed up database to c:\temp\cabackup.
Database logs successfully truncated.
CertUtil: -backup command completed successfully.

Open in new window

0

Featured Post

What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

Article by: btan
Provide an easy one stop to quickly get the relevant information on common asked question on Ransomware in Expert Exchange.
Microservice architecture adoption brings many advantages, but can add intricacy. Selecting the right orchestration tool is most important for business specific needs.
This tutorial will walk an individual through the steps necessary to enable the VMware\Hyper-V licensed feature of Backup Exec 2012. In addition, how to add a VMware server and configure a backup job. The first step is to acquire the necessary licen…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

760 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now