Certificate Authority is a server role introduced by Microsoft, to issue digital certificates to target recipients. These digital certificates enable the environment to communicate securely between each other.
Installing an internal CA server is not too hard and pretty much straight forward I believe.
Description :
Installing an Internal CA on Server 2012.
How To Do :
- Launch Server Manager, Go to Manage | Add Roles and Features
- Click Next >
- Ensure Role-based or feature-based installation is chosen, and click Next >
- Ensure the target server is selected from the server pool, and click Next >
- Check / tick Active Directory Certificate Services role
- The Add Roles and Features Wizard appeared. Click at Add Features button.
- Click Next >
- Select additional features if needed, then click Next >
- Click Next >
- Check / tick Certificate Authority role service
- To enable web enrollment, Certificate Authority Web Enrollment role service needs to be enabled as well. Check / tick at it, then click Next >
- Once all confirmed, click Install
- Installing...
- At Server Manager, hover to Notification, and click at at Post-Deployment Configuration to configure Certificate Services role.
- Click Change... if you want to change the credential used, then click Next >
- Select which role services need to be configured, in this case the first two.
- Specify type of CA to be configured, either Enterprise CA or Standalone CA. Click Next > once done.You may refer to below links for better understanding :Stand-Alone CA : https://technet.microsoft.com/en-us/library/cc755290(v=ws.11).aspx
- Specify whether the server should be a Root CA or Subordinate CA. In this case, Root CA is chosen as this is the first CA in the environment. Click Next >
- Specify whether to create a new private key or to use existing private key. You may refer to below link for better understanding on Private Key. Click Next > once done.
- Choose Cryptographic provider, key length, and hash algorithm. Refer to below link for more info on cryptography. Click Next >
- Specify the name of the CA, then click Next >
- Specify the validity period of the Certificate, then click Next >
- Specify the database locations, then click Next >
- Review the information populated, then click Configure.
- Configuring...
- Done, click Close.
- CA Configured.
Comments
Post a Comment