Process which downloads the trusted root and intermediate certificates to a domain joined workstation ?
from understanding when ca root certificate or intermediate published aia , ca containers in ad if auto enrollment enabled in global gpo certs pulled down clients certificate store next time gpo refreshed. firstly correct ? , secondly right should take 90 minutes max default once ca cert has replicated users local dc ?
1) yes
2) yes
my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
check out new: powershell fciv tool.
Windows Server > Security
Comments
Post a Comment