Uninstall or Migrate CA from Win2003 DC


question
you cannot vote on own post 

i have old win2003 dc has ca running on it.  think installed specifically radius use authenticated wifi clients on cisco wlc.  the win2003 dc last of win2003 servers on domain , looking @ getting of value migrated can retired.  in looking @ ca, if stop service, errors logged on win2008 dcs.  there being issued win2003ca in regards to replication guess, not sure, because certificate can see in console expired earlier year.  know domain existed without ca installed anywhere several years though. 

i would get the ca off server.  possible just uninstall/decommision ca , install new ca on server or must migrate one?  , if must migrate it, how can i put ca on server different name? i think reason need ca @ radius use wifi authentication.

thanks help.

if ca used radius (server certificate), easier uninstall , decommission ca server , install new 1 on separate server. also, migration procedure exists too, not simple. here docs for:

ca decommission: http://social.technet.microsoft.com/wiki/contents/articles/3527.how-to-decommission-a-windows-enterprise-certification-authority-and-how-to-remove-all-related-objects.aspx

adcs migration: http://technet.microsoft.com/en-us/library/ee126170(v=ws.10).aspx


my weblog: en-us.sysadmins.lv
powershell pki module: pspki.codeplex.com
powershell cmdlet editor pscmdlethelpeditor.codeplex.com
check out new: ssl certificate verifier
check out new: powershell fciv tool.



Windows Server  >  Security



Comments

Popular posts from this blog

Motherboard replacement

Cannot create Full Text Search catalog after upgrading to V12 - Database is not fully started up or it is not in an ONLINE state

Remote Desktop App - Error 0x207 or 0x607