Firewall Rules for Active Directory Certificate Services

Published Jan 24 2020 01:49 PM 13.3K Views
Microsoft

First published on TECHNET on Jun 25, 2010

 

 

 

 

Below is a list of ports that need to be opened on Active Directory Certificate Services servers to enable HTTP and DCOM based enrollment

 

 

 

 

The information was developed by Microsoft Consultant Services during one of our customer engagements

 

 

 

 


Protocol

 

 


Port

 

 


From

 

 


To

 

 


Action

 

 


Comments

 

 


Kerberos

 

 


464

 

 


Certificate Enrollment Web Services


 


 


Domain Controllers (DC)

 

 


Allow

 

 


Source Certificate Enrollment Web Services

 

 


Destination : DC

 

 


Service : Kerberos (network port tcp/464)

 

 


LDAP

 

 


389

 

 


Certificate Enrollment Web Services


 


 


Domain Controllers (DC)

 

 


Allow

 

 


Source Certificate Enrollment Web Services

 

 


Destination: DC

 

 


Service: LDAP (network port tcp/389)

 

 


LDAP

 

 


636

 

 


Certificate Enrollment Web Services


 


 


Domain Controllers (DC)

 

 


Allow

 

 


Source Certificate Enrollment Web Services

 

 


Destination: DC

 

 


Service: LDAP (network port tcp/636)

 

 


DCOM/RPC

 

 


Random port above port 1023


· Certificate Enrollment Web Services

 

 


· All XP clients requesting certs

 

 


 


CA


Allow

 

 


Please see for details on RPC/DCOM configuration: http://support.microsoft.com/kb/154596/en-us

 

 


HTTPS

 

 


443

 

 


All clients requesting certs

 

 


Certificate Enrollment Web Services


 


 


Allow

 

 


Source: Windows 7 client

 

 


Destination:


 


Service: https (network port tcp/443)

 

 


Certificate Enrollment Web Services

 

 

%3CLINGO-SUB%20id%3D%22lingo-sub-1128612%22%20slang%3D%22en-US%22%3EFirewall%20Rules%20for%20Active%20Directory%20Certificate%20Services%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1128612%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSTRONG%3E%20First%20published%20on%20TECHNET%20on%20Jun%2025%2C%202010%20%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22color%3A%20%23000000%3B%22%3E%20Below%20is%20a%20list%20of%20ports%20that%20need%20to%20be%20opened%20on%20Active%20Directory%20Certificate%20Services%20servers%20to%20enable%20HTTP%20and%20DCOM%20based%20enrollment%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%3CSPAN%20style%3D%22font-family%3A%20times%20new%20roman%2Ctimes%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22color%3A%20%23000000%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20The%20information%20was%20developed%20by%20Microsoft%20Consultant%20Services%20during%20one%20of%20our%20customer%20engagements%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CTABLE%20class%3D%22MsoNormalTable%22%20style%3D%22border-collapse%3A%20collapse%3B%20mso-yfti-tbllook%3A%201184%3B%20mso-padding-alt%3A%200in%200in%200in%200in%3B%22%20border%3D%220%22%20cellspacing%3D%220%22%20cellpadding%3D%220%22%3E%0A%3CTBODY%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%200%3B%20mso-yfti-firstrow%3A%20yes%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Protocol%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20windowtext%201pt%20solid%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Port%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20windowtext%201pt%20solid%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20From%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20windowtext%201pt%20solid%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20To%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20windowtext%201pt%20solid%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Action%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20windowtext%201pt%20solid%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%20align%3D%22center%22%3E%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Comments%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSTRONG%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%201%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20windowtext%201pt%20solid%3B%20background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Kerberos%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%234f81bd%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20464%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Domain%20Controllers%20(DC)%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Allow%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3ESource%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EDestination%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3A%20DC%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EService%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3A%20Kerberos%20(network%20port%20tcp%2F464)%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%203%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20windowtext%201pt%20solid%3B%20background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20LDAP%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%234f81bd%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20389%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Domain%20Controllers%20(DC)%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Allow%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3ESource%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EDestination%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20DC%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EService%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20LDAP%20(network%20port%20tcp%2F389)%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%204%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20windowtext%201pt%20solid%3B%20background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20LDAP%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%234f81bd%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20636%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Domain%20Controllers%20(DC)%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Allow%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3ESource%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EDestination%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20DC%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EService%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20LDAP%20(network%20port%20tcp%2F636)%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%205%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20windowtext%201pt%20solid%3B%20background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20DCOM%2FRPC%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-family%3A%20'Verdana'%2C'sans-serif'%3B%20color%3A%20%234f81bd%3B%20font-size%3A%208.5pt%3B%22%3E%20Random%20port%20above%20port%201023%20%3C%2FSPAN%3E%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoListParagraph%22%3E%3CSPAN%20style%3D%22font-family%3A%20Symbol%3B%20color%3A%20%231f497d%3B%20mso-fareast-font-family%3A%20Symbol%3B%20mso-bidi-font-family%3A%20Symbol%3B%22%3E%20%3CSPAN%20style%3D%22mso-list%3A%20Ignore%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%C2%B7%20%3C%2FSPAN%3E%20%3CSPAN%20style%3D%22font%3A%207pt%20'Times%20New%20Roman'%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoListParagraph%22%3E%3CSPAN%20style%3D%22font-family%3A%20Symbol%3B%20color%3A%20%231f497d%3B%20mso-fareast-font-family%3A%20Symbol%3B%20mso-bidi-font-family%3A%20Symbol%3B%22%3E%3CSPAN%20style%3D%22mso-list%3A%20Ignore%3B%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%C2%B7%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20All%20XP%20clients%20requesting%20certs%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20CA%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Allow%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%20font-size%3A%20small%3B%22%3E%20Please%20see%20for%20details%20on%20RPC%2FDCOM%20configuration%3A%20%3C%2FSPAN%3E%20%3CA%20href%3D%22http%3A%2F%2Fsupport.microsoft.com%2Fkb%2F154596%2Fen-us%22%20target%3D%22_blank%22%20rel%3D%22noopener%20noreferrer%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%20color%3A%20%230000ff%3B%20font-size%3A%20small%3B%22%3E%20http%3A%2F%2Fsupport.microsoft.com%2Fkb%2F154596%2Fen-us%20%3C%2FSPAN%3E%20%3C%2FA%3E%20%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3CTR%20style%3D%22mso-yfti-irow%3A%206%3B%20mso-yfti-lastrow%3A%20yes%3B%22%3E%0A%3CTD%20width%3D%22109%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20windowtext%201pt%20solid%3B%20background-color%3A%20transparent%3B%20width%3A%2065.4pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20HTTPS%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22116%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%2069.3pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-family%3A%20'Verdana'%2C'sans-serif'%3B%20color%3A%20%234f81bd%3B%20font-size%3A%208.5pt%3B%22%3E%20443%20%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22203%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20121.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20All%20clients%20requesting%20certs%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22218%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20130.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%2290%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%200.75in%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%205.4pt%200in%205.4pt%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Allow%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3CTD%20width%3D%22398%22%20valign%3D%22top%22%20style%3D%22border-bottom%3A%20windowtext%201pt%20solid%3B%20border-left%3A%20%23d4d0c8%3B%20background-color%3A%20transparent%3B%20width%3A%20238.5pt%3B%20border-top%3A%20%23d4d0c8%3B%20border-right%3A%20windowtext%201pt%20solid%3B%20padding%3A%200in%3B%22%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3ESource%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20Windows%207%20client%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20Destination%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FP%3E%3CBR%20%2F%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20%3CSTRONG%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3EService%3A%20%3C%2FSPAN%3E%20%3C%2FSTRONG%3E%20%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20https%20(network%20port%20tcp%2F443)%3C%2FSPAN%3E%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%3CBR%20%2F%3E%3CP%20class%3D%22MsoNormal%22%3E%3CSPAN%20style%3D%22color%3A%20%231f497d%3B%22%3E%20%3CSPAN%20style%3D%22font-size%3A%20small%3B%22%3E%20%3CSPAN%20style%3D%22font-family%3A%20Calibri%3B%22%3E%20Certificate%20Enrollment%20Web%20Services%20%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3C%2FTD%3E%0A%3C%2FTR%3E%0A%3C%2FTBODY%3E%0A%3C%2FTABLE%3E%3C%2FLINGO-BODY%3E%3CLINGO-TEASER%20id%3D%22lingo-teaser-1128612%22%20slang%3D%22en-US%22%3E%3CP%3EFirst%20published%20on%20TECHNET%20on%20Jun%2025%2C%202010%20%26nbsp%3B%26nbsp%3BBelow%20is%20a%20list%20of%20ports%20that%20need%20to%20be%20opened%20on%20Active%20Directory%20Certificate%20Services%20servers%20to%20enable%20HTTP%20and%20DCOM%20based%20enrollment%26nbsp%3BThe%20information%20was%20developed%20by%20Microsoft%20Consultant%20Services%20during%20one%20of%20our%20customer%20engagementsProtocolPortFromToActionCommentsKerberos464Certificate%20Enrollment%20Web%20Services%26nbsp%3B%26nbsp%3BDomain%20Controllers%20(DC)AllowSource%20Certificate%20Enrollment%20Web%20ServicesDestination%3A%20DCService%3A%20Kerberos%20(network%20port%20tcp%2F464)LDAP389Certificate%20Enrollment%20Web%20Services%26nbsp%3B%26nbsp%3BDomain%20Controllers%20(DC)AllowSource%20Certificate%20Enrollment%20Web%20ServicesDestination%3A%20DCService%3A%20LDAP%20(network%20port%20tcp%2F389)LDAP636Certificate%20Enrollment%20Web%20Services%26nbsp%3B%26nbsp%3BDomain%20Controllers%20(DC)AllowSource%20Certificate%20Enrollment%20Web%20ServicesDestination%3A%20DCService%3A%20LDAP%20(network%20port%20tcp%2F636)DCOM%2FRPCRandom%20port%20above%20port%201023%C2%B7%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3BCertificate%20Enrollment%20Web%20Services%C2%B7%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%26nbsp%3B%20All%20XP%20clients%20requesting%20certs%26nbsp%3BCAAllowPlease%20see%20for%20details%20on%20RPC%2FDCOM%20configuration%3A%20http%3A%2F%2Fsupport.%3C%2FP%3E%3C%2FLINGO-TEASER%3E%3CLINGO-LABS%20id%3D%22lingo-labs-1128612%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EPKI%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Version history
Last update:
‎Feb 21 2020 05:32 AM
Updated by: