Avoid CA database changes whilst upgrading 2003 CA to 2008 CS ?
when using below process want avoid possibility of changes database after ca database has been restored onto new 2008 r2 server (using process below). have suggestions on ? want introduce ca server network after sure server in health state.
http://technet.microsoft.com/en-us/library/ee126140%28v=ws.10%29#bkmk_restoreca
turn on windows firewall rule prevent adcs request incoming requests.
there 4 rules disable (temporarily)
- certification authority enrollment , management protocol (certsvc-dcom-in)
- certification authority enrollment , management protocol (certsvc-rpc-epmap-in)
- certification authority enrollment , management protocol (certsvc-rpc-np-in)
- certification authority enrollment , management protocol (certsvc-tcp-in)
this block enrollment requests while health of ca after restoration new os
brian
Windows Server > Security
Comments
Post a Comment