Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Enterprise Certificate Authority crashed

Posted on 2015-02-18
5
Medium Priority
?
163 Views
Last Modified: 2015-03-03
i have a windows server 2008 Certificate server that crashed and need to know how to introduce an new cert server in the enterprise without causing any problems.  can this be done?
0
Comment
Question by:johnkesoglou
  • 2
  • 2
5 Comments
 
LVL 22

Accepted Solution

by:
Jakob Digranes earned 1600 total points
ID: 40618352
0
 
LVL 47

Assisted Solution

by:Craig Beck
Craig Beck earned 400 total points
ID: 40618436
I'm assuming this was an Enterprise Root CA??

Do you want clients to be able to use their existing certs?  If so, you'll need to treat this as a DR exercise.
http://blogs.technet.com/b/pki/archive/2010/04/20/disaster-recovery-procedures-for-the-active-directory-certificate-services-adcs.aspx

If you don't mind having to reinstall certs everywhere (basically starting your PKI from scratch) just install a new CA, as Jakob said.
0
 

Author Comment

by:johnkesoglou
ID: 40621768
thank you guys.  my only concern is when i remove these objects from the AD schema will it create an issue before i stand up another cert server?

thanks
John
0
 
LVL 22

Expert Comment

by:Jakob Digranes
ID: 40623272
not at all..... When migrating from 32-bit Win2003 CA server to new 64-bit 2008/2012 I always have at least 2 different Enterprise CA servers in the domain. Absolutely no issues
0
 

Author Closing Comment

by:johnkesoglou
ID: 40642963
Thank you guys; the information was most helpful
0

Featured Post

Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Scenario:  You do full backups to a internal hard drive in either product (SBS or Server 2008).  All goes well for a very long time.  One day, backups begin to fail with a message that the disk is full.  Your disk contains many, many more backups th…
After seeing many questions for JRNL_WRAP_ERROR for replication failure, I thought it would be useful to write this article.
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…

877 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question