|
Posted by Paul Adare on February 25, 2006, 3:11 am
If you were Registered and logged in, you could reply and use other advanced thread options
microsoft.public.security news group, =?Utf-8?B?RnJhbms=?=
> Is there a way to setup 2 servers as the CA for failover purposes? I'm
> thinking kind of like how DNS servers work. Where if one goes down, the other
> one will just take over. It will be very important for the CA to stay up
> because of the constant changes we will be making in the Issuing and denying
> of certificates. Any information or suggestions would be great. Thanks!
>
Stand up two CAs and publish the same certificate templates from both of
them. This will allow any client to request a certificate from either
CA.
I'm a little confused as to what exactly you mean by the constant
changes to "issuing and denying" of certificates however, can you
clarify?
--
Paul Adare - MVP Virtual Machines
It all began with Adam. He was the first man to tell a joke--or a lie.
How lucky Adam was. He knew when he said a good thing, nobody had said
it before. Adam was not alone in the Garden of Eden, however, and does
not deserve all the credit; much is due to Eve, the first woman, and
Satan, the first consultant." - Mark Twain
|