Wednesday, February 23, 2011

Publish standalone RootCA CRL to Issuing CA and Active Directory

On the  RootCA server.
Start Certificate Authority
right click on revoked certificates->all tasks->publish
explore to windir\system32\certsrv\certenroll
copy rootca.crl to file://issuingca/certenroll
switch to issuingca server
start cmd window
certutil -dspublish windir\system32\certsrv\certenroll\rootca.crl

No comments:

Post a Comment