Certificate for IP-HTTPS in DirectAccess Role
i setting directaccess server our child domain.
i first tried using self-signed certificate. showed ip-https ok ipsec not configured because certificate not trusted.
i tried generating certificate request iis , generating certificate our standalone certification server. did not work because subject field of certificate did not contain fqdn of directaccess server. contained company , location information well.
i created certificate manually using certreq on our certification server. certificate loaded did not have private key attached.
trying generate private key command "certutil -repairstore "serial number of certificate" generated prompt smartcard though not use smartcards.
trying generate new certificate request within certificate snap-in on directaccess server fails permission denied error because domain admin , not enterprise admin.
can directaccess installed enterprise admins?
is else try? suggestions?
thanks
charlotte
charlotte mcclellan
hi charlotte,
thanks posting on technet forum.
>>can directaccess installed enterprise admins?
i have test in environment using domain admin accounts, found install direct access .
>>is else try? suggestions?
the following link helps configure certificates ipsec:
https://technet.microsoft.com/en-us/library/jj134204.aspx#configcas
>>i tried generating certificate request iis , generating certificate our standalone certification server
you try add standalone ca server same domain da.
best regards,
andy_pan
Windows Server > Windows Server General Forum
Comments
Post a Comment