Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

Publish the CRL from a stand-alone CA in the active directory

0 views
Skip to first unread message

Konig

unread,
Jul 26, 2002, 10:49:27 AM7/26/02
to
Hello,

I wanted to install a microsoft Windows 2000 stand-alone
certification authority. I don't want to publish the certicate in the
Active Directory. But I need the CRL to be in the AD.
I see in Microsoft doc that you only need to be domain admin or
enterprise admin to install the stand-alone CA to publish the CRL in
Active Directory.
Also, a domain admin (and not an enterprise admin) install my
stand-alone CA.
But the entry in the active directory (Cn=Public Key
Services\CN=CDP\CN=MyMachine\CN=MyCrl) isn't been created.
I used dsstore DC=MyForestName "CRL.crl" "MyCAName" "MyMachine" to
publish the CRL. And It worked!
But when the CRL is published (manually or periodically), the CRL in
the Active Directory is not modified !
I gave the right to the (CA's) server to write in the CRL in the Ative
Directory. But this has no effect.
What else can I do?

Thanks

0 new messages