|
Posted by =?Utf-8?B?VmFzdQ==?= on June 14, 2006, 9:57 am
If you were Registered and logged in, you could reply and use other advanced thread options I don't think it has to be a member of the domain or a DC to be able to run a
CA. However if you do make it a member of the domain (or DC), it helps in
distributing the certificates easily.
Depending on the certificate template you choose, you may be able to offer
'autoenrollment' which may greatly simplify your task of getting the
certificates to the users.
Hope this helps.
--Vasu.
"fec" wrote:
> I am trying to setup a Microsoft Certificate Authority but am having
> problems. I installed it as and Enterprise Root CA on a Windows 2003 server
> with SP1. It is running but I have some questions.
>
> I don't know a whole lot about this so I have been reading and learning.
>
> Does the CA have to be on a domain controller or just need access to a
> domain controller? Do I have to have a suborinate CA or can the certificates
> be distributed with the Root?
>
> My goal is to be able to use digital signatures with in our business for
> time cards. All internal. Any and all information about how to set us the
> certificates, distribute to the clients and any other useful info would be
> appreciated.
>
> Thank you.
|