Certificate server with SAN


hello,

my ca in windows server 2003 r2 enterprise edition sp2. versión of ca 5.2.

now, can not request certificates subject alternative names (san).

i have read information (http://support.microsoft.com/kb/931351).

but can not select csp: microsoft rsa schannel cryptographic provider, of cryptographic service provider field.

someone knows how can obtain it¿?

or on other hand, there other way obtain certificate san.

thanks.

 

the list don't contains san enabled flag. output should this:

editflags reg_dword = 15014e (1376590)
  editf_requestextensionlist -- 2
  editf_disableextensionlist -- 4
  editf_addoldkeyusage -- 8
  editf_basicconstraintscritical -- 40 (64)
  editf_enableakikeyid -- 100 (256)
  editf_enabledefaultsmime -- 10000 (65536)
  editf_attributesubjectaltname2 -- 40000 (262144)
  editf_enablechaseclientdc -- 100000 (1048576)

so, need rerun following commands:

certutil -setreg policy\editflags +editf_attributesubjectaltname2
net stop certsvc
net start certsvc
on *ca server*

http://en-us.sysadmins.lv


Windows Server  >  Security



Comments

Popular posts from this blog

server manager error: ADAM.events.xml could not be enumerated.

Cannot access Anywhere Access using domain name?

WMI Failure: Unable to update Local Resource Group