Change CRL expiry date on Windows 2003 certificate Server

Change CRL expiry date on Windows 2003 certificate Server

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Change CRL expiry date on Windows 2003 certificate Server Mr555 07-27-2006
Posted by =?Utf-8?B?TXI1NTU=?= on July 27, 2006, 8:34 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hello everyone.

Recently I have re-engineered a new certificate server to Windows 2003
Server.
The purpose of our certificate server are for authenticate VPN connection.
We use net screen 50 VPN/firewall.
Our VPN connection is working fine until our CRL list expired, The VPN stops
working. I regenerated a new CRL and imports it back to our netscreen
firewall. The r VPN is running again. I notices our CRL only last for 1 week.
I generated a new CRL today and will expire on the 2 of August 2006. is there
anyway I can change the CRL expiry date ?

I will be very appreciate it if someone could give me some help

Thank you

Mr555


Posted by =?Utf-8?B?Q2lwaGVyVGVLU1Q=?= on September 24, 2006, 3:39 am
If you were  Registered and logged in, you could reply and use other advanced thread options
A CRL is a list of revoked certificates. If you are asking about changing the
expiration date on a certificate, you have to do that on the actual
certificate. If you are asking about how to schedule the publication of the
CRL or the Validity period. You can go into the CA mmc and click on revoked
certs then click Action/properties go to CRL pulication interval and choose
you time interval for automatically publishing the CRL. Although the validty
period is different from the publishing schedule so the validity period will
exceed the publishing schedule by a 10% time difference to allow for
directory replication.
Here is a link on how to do this...

http://technet2.microsoft.com/WindowsServer/en/library/9c94d5e4-e1e8-49fc-9df2-578afc10c1911033.mspx?mfr=true

Goodluck...
--
CipherTeKST
MCSE: Security 2003, CCNA, Security+


"Mr555" wrote:

> Hello everyone.
>
> Recently I have re-engineered a new certificate server to Windows 2003
> Server.
> The purpose of our certificate server are for authenticate VPN connection.
> We use net screen 50 VPN/firewall.
> Our VPN connection is working fine until our CRL list expired, The VPN stops
> working. I regenerated a new CRL and imports it back to our netscreen
> firewall. The r VPN is running again. I notices our CRL only last for 1 week.
> I generated a new CRL today and will expire on the 2 of August 2006. is there
> anyway I can change the CRL expiry date ?
>
> I will be very appreciate it if someone could give me some help
>
> Thank you
>
> Mr555
>

Similar ThreadsPosted
Certificate enroll with Windows Server 2003? December 12, 2005, 9:46 pm
Certificate enroll with Windows Server 2003? December 12, 2005, 10:36 pm
Certificate problem with Windows Server 2003 May 22, 2006, 12:25 pm
Windows 2000 Certificate server---->2003 August 26, 2008, 3:52 pm
Using SSL Certificate for TSAC on NLB Windows 2003 Terminal Server March 28, 2006, 11:42 am
Certificate Services features vs Windows 2003 server editions May 24, 2006, 3:17 pm
cannot change the date and time December 5, 2005, 10:29 am
How to extend expiry for Server Certs issued with W2k3 CA November 27, 2006, 5:19 am
Certificate Error on 2003 server November 14, 2005, 2:23 pm
Using Server 2003 to sign Sonicwall VPN certificate March 27, 2007, 3:52 am

The site map in XML format XML site map

Contact Us | Privacy Policy