Solved

Certificate auto-enrollment has not been enabled.

Posted on 2014-10-21
4
537 Views
Last Modified: 2014-11-06
I was in the process of demoting and decommissioning an old 2003 Domain Controller when I determined is was the certificate authority for this domain.  This network has two 2008 R2 DC's functioning so I decided to move that role to one of those servers.

I followed the migration procedures detailed in this TechNet article and all seemed to be fine until I tried to verify the migration by launching the certmgr and requesting to  automatically enroll and retrieve certificates.

http://technet.microsoft.com/en-us/library/ee126140(v=ws.10).aspx

The results seem to indicate Certificate Auto-Enrollment has not been enabled.

When I select the option to Show All Templates, all options are greyed out - status:  Unavailable.  Did I miss something?

Any thoughts would be greatly appreciated.  Thank you
0
Comment
Question by:LenCepeda
  • 2
  • 2
4 Comments
 
LVL 9

Expert Comment

by:RantCan
ID: 40395551
Have you verified the services are started?
0
 

Author Comment

by:LenCepeda
ID: 40395702
Yes, I verified the AD Certificate Services are running.
0
 
LVL 9

Accepted Solution

by:
RantCan earned 500 total points
ID: 40395907
Can you upload the C:\windows\certocm.log file?
0
 

Author Closing Comment

by:LenCepeda
ID: 40427005
I believe I needed to wait for the changes to take effect.  I rebooted the server waited a few hours and all was in order
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

A procedure for exporting installed hotfix details of remote computers using powershell
This article explains how to install and use the NTBackup utility that comes with Windows Server.
This tutorial will walk an individual through configuring a drive on a Windows Server 2008 to perform shadow copies in order to quickly recover deleted files and folders. Click on Start and then select Computer to view the available drives on the se…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question