ACTIVE DIRECTORY CERTIFICATE SERVICES (AD CS)

%3CLINGO-SUB%20id%3D%22lingo-sub-1307599%22%20slang%3D%22en-US%22%3EACTIVE%20DIRECTORY%20CERTIFICATE%20SERVICES%20(AD%20CS)%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1307599%22%20slang%3D%22en-US%22%3E%3CH2%20id%3D%22toc-hId--1358994452%22%20id%3D%22toc-hId--1358993779%22%3E%3CFONT%20size%3D%223%22%3EI%20am%20new%20to%20AD%20CS%20and%20have%20a%20few%20questions%20about%20it.%20A%20little%20bit%20of%20a%20background%3A%20I%20have%20a%20customer%20who%20wants%20to%20set%20up%20AD%20CS%20to%20authenticate%20domain%20PCs%20as%20well%20as%20to%20encrypt%20network%20traffic.%20%3C%2FFONT%3E%3C%2FH2%3E%3CH2%20id%3D%22toc-hId-1128518381%22%20id%3D%22toc-hId-1128519054%22%3E%3CFONT%20size%3D%223%22%3ENow%20with%20the%20questions%3A%20%3C%2FFONT%3E%3C%2FH2%3E%3COL%3E%3CLI%3E%26nbsp%3Bit%20was%20my%20understanding%20that%20as%20soon%20as%20AD%20CS%20is%20set%20up%20and%20certificate%20is%20pushed%20to%20the%20domain%20using%20GPO%2C%20PCs%20will%20receive%20certificate%20from%20the%20server%20and%20that%20what%20is%20needed%20for%20authentication.%20Is%20this%20correct%3F%3C%2FLI%3E%3CLI%3EI%20can't%20find%20any%20information%20on%20what%20is%20needed%20for%20network%20traffic%20encryption.%20Does%20anyone%20has%20a%20tutorial%20or%20can%20point%20me%20in%20right%20direction.%3C%2FLI%3E%3CLI%3EIs%20there%20anything%20I%20need%20to%20do%20for%20the%20devices%20like%20firewall%2C%20etc%20that%20are%20using%20LDAP%20to%20communicate%20with%20DC.%3C%2FLI%3E%3C%2FOL%3E%3CP%3EThank%20you%20in%20advance%20for%20any%20help%20I%20can%20get.%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3ESerge%3C%2FP%3E%3CDIV%20class%3D%22question-body%20post-body%22%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3C%2FDIV%3E%3C%2FLINGO-BODY%3E
Occasional Visitor

I am new to AD CS and have a few questions about it. A little bit of a background: I have a customer who wants to set up AD CS to authenticate domain PCs as well as to encrypt network traffic.

Now with the questions:

  1.  it was my understanding that as soon as AD CS is set up and certificate is pushed to the domain using GPO, PCs will receive certificate from the server and that what is needed for authentication. Is this correct?
  2. I can't find any information on what is needed for network traffic encryption. Does anyone has a tutorial or can point me in right direction.
  3. Is there anything I need to do for the devices like firewall, etc that are using LDAP to communicate with DC.

Thank you in advance for any help I can get.

 

Serge

 

0 Replies