- AD Certificate Services and CA Web Enrollment
Active directory service enables both users and computers to perform certificate enrollment through the HTTPS protocol. This accepts certificate requests and issue certificates as needed. This helps users that are not part of a domain to receive certificates.
- Key Archival and Key Recovery Agent
Is the process of saving a copy of the key to a central location for the purpose of recovery if the key is deleted or lost.
The reason for key archives is to safeguard any data loss that may occur if a user is deleted from the system and the private key is lost.
In order to backup and recover a key the user will need to run the certificates snapin fuction and export the key.
