Click OK to close the Properties of New Template and close the Certificates Template Console.This allows you to supply each FQDN of the client in the separate WORKGROUP at the time you request the certificate. Click the Subject Name tab, select Supply in the request.Click the Request Handling tab and select Allow private key to be exported.As my normal Client Certificate Template is named ConfigMgr Client Certificate, I will name this one ConfigMgr Client Certificate for Export. In the Properties of New Template dialog box, type the name for Template display name.Right-click the Workstation Authentication template and click Duplicate Template.Select Windows Server 2003 Enterprise and click Ok.Open the Certification Authority Console, right-click Certificate Templates, and click Manage to load the Certificates Templates console.Create a Certificate Template for the WORKGROUP computer Use the following command to export the Root Certificate: certutil -ca.cert RootCertificate.cer.Open a command prompt and go to the just created folder.Logon to the Certification Authority server and create a folder to contain your certificate files (eg C:\Certificates).Export the Root Certificate for use on the WORKGROUP computer These same steps can also be used for separate forests. So to make the basics of this process for everyone a bit easier I wrote down these seven steps for implementing the correct certificates and installing the ConfigMgr Client on a WORKGROUP client. I think I am not the only one who didn’t work that much with certificates before ConfigMgr. To install a ConfigMgr Client on a WORKGROUP computer is always a nice battle, when the ConfigMgr Site is in Native Mode.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |