Solved

Enterprise Certificate Authority crashed

Posted on 2015-02-18
5
108 Views
Last Modified: 2015-03-03
i have a windows server 2008 Certificate server that crashed and need to know how to introduce an new cert server in the enterprise without causing any problems.  can this be done?
0
Comment
Question by:johnkesoglou
  • 2
  • 2
5 Comments
 
LVL 21

Accepted Solution

by:
Jakob Digranes earned 400 total points
ID: 40618352
0
 
LVL 45

Assisted Solution

by:Craig Beck
Craig Beck earned 100 total points
ID: 40618436
I'm assuming this was an Enterprise Root CA??

Do you want clients to be able to use their existing certs?  If so, you'll need to treat this as a DR exercise.
http://blogs.technet.com/b/pki/archive/2010/04/20/disaster-recovery-procedures-for-the-active-directory-certificate-services-adcs.aspx

If you don't mind having to reinstall certs everywhere (basically starting your PKI from scratch) just install a new CA, as Jakob said.
0
 

Author Comment

by:johnkesoglou
ID: 40621768
thank you guys.  my only concern is when i remove these objects from the AD schema will it create an issue before i stand up another cert server?

thanks
John
0
 
LVL 21

Expert Comment

by:Jakob Digranes
ID: 40623272
not at all..... When migrating from 32-bit Win2003 CA server to new 64-bit 2008/2012 I always have at least 2 different Enterprise CA servers in the domain. Absolutely no issues
0
 

Author Closing Comment

by:johnkesoglou
ID: 40642963
Thank you guys; the information was most helpful
0

Featured Post

NAS Cloud Backup Strategies

This article explains backup scenarios when using network storage. We review the so-called “3-2-1 strategy” and summarize the methods you can use to send NAS data to the cloud

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

We recently had an issue where out of nowhere, end users started indicating that their logins to our terminal server were just showing a "blank screen." After checking the usual suspects -- profiles, shell=explorer.exe in the registry, userinit.exe,…
You might have come across a situation when you have Exchange 2013 server in two different sites (Production and DR). After adding the Database copy in ECP console it displays Database copy status unknown for the DR exchange server. Issue is strange…
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
This tutorial will walk an individual through the steps necessary to install and configure the Windows Server Backup Utility. Directly connect an external storage device such as a USB drive, or CD\DVD burner: If the device is a USB drive, ensure i…

840 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question