Announcement

Collapse
No announcement yet.

Server 2003 Wireless Certificate Issues - Help!

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Server 2003 Wireless Certificate Issues - Help!

    I am running a server 2003 environment with a root CA that is kept offline 99% of the time; it is only powered on to create new CA certificates for its subordinate, which issues the certificates to end users for wireless access. The subordinate CA certificate is due to expire in 2 months and I need to renew it. I've gone through the process of obtaining a new CA cert from the root CA that will be valid for another 3 years. What will be the effects of installing the new certificate on the subordinate CA? I've read on microsoft's website that clients with the old certificate will be able to use it until it expires in a few months, and clients requesting a new certificate will use the new cert that won't expire for years.
    I want to make sure it's a seamless rollover for every client. What will happen once the old certs expire? Will they get the new cert, or will it be automatically supported, since it's the same CA chain?

    Also, autoenrollment is not enabled. Will every client have to request a new certificate through the host\certsrv site once I install it on the CA, or is there an option to have the new cert pushed out / renewed for each client? (remember, autoenrollment is not enabled)

    Thanks in advance for the help! I'm a cisco networking guy placed into a sys admin role and am way out of my league.

  • #2
    Re: Server 2003 Wireless Certificate Issues - Help!

    http://technet2.microsoft.com/window....mspx?mfr=true



    DON'T generate a new public and private keys

    Comment


    • #3
      Re: Server 2003 Wireless Certificate Issues - Help!

      And what about clients getting the new cert? Will they have to submit a new request, or is there an option to redistribute to all clients without having autoenrollment enabled?

      Comment

      Working...
      X