Share via


Certificate Autority problem - Basic EFS and User are my only options

Question

Monday, October 3, 2011 10:00 PM

 

 

 

Windows 2003 SP2 Standard - running DNS, domain controller and CA (cert authority).

 

Client machine - W2K3 SP2 running E2K3 SP2

 

About a week ago, I requested a "Web Server" certificate for a server running Exchange 2003.  

 

This cert still appears among the templates in the CA MMC:

 

EFS Recovery Agent

Basic EFS

Domain Controller

Web Server

Computer

User

Subordinate Cert Authority

Administrator

 

Unlike last week, when I was able to select the "Web Server" template using this URL to request the cert:

http://dc-1.mynet.int/certsrv

 

There are now only two choices:

- Basic EFS

- User

For the life of me, I cannot place any other certificate back among the options.

I cannot request a Web Server" template anymore - for another server.

Regardless of how this might have happened... how do I re-establish those templates as an option?

Yes, I am logged in as a domain admin.  

All replies (2)

Tuesday, October 4, 2011 12:47 AM âś…Answered

HI Le Pivert

 

look if the permission on the template you try to select are right need to have read and enroll and try to re-publish the template

you can try the certutil -vroot ( to fix iis use)

 

Stef71


Tuesday, October 4, 2011 7:24 AM

On Tue, 4 Oct 2011 00:47:44 +0000, Stef71 wrote:

you can try the certutil -vroot ( to fix iis use)

If the vroot were missing then the /certsrv web site would be completely
inaccessible.

Paul Adare
MVP - Identity Lifecycle Manager
http://www.identit.ca
E Pluribus UNIX.