Lab 9: Managing Certificates

  1. AD Certificate Services and CA Web Enrollment

Active directory service enables both users and computers to perform certificate enrollment through the HTTPS protocol. This accepts certificate requests and issue certificates as needed. This helps users that are not part of a domain to receive certificates.

  1. Key Archival and Key Recovery Agent 

Is the process of saving a copy of the key to a central location for the purpose of recovery if the key is deleted or lost.

The reason for key archives is to safeguard any data loss that may occur if a user is deleted from the system and the private key is lost.

In order to backup and recover a key the user will need to run the certificates snapin fuction and export the key.

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Design a site like this with WordPress.com
Get started