Forum Discussion
Marius_Roma
May 13, 2023Brass Contributor
NET::ERR_CERT_COMMON_NAME_INVALID
In a clean lab environment I installed 2 Windows Server 2019 servers. On the first server I installed: - Active Directory Domain Services - Active Directory Certificate Services with: - Certifica...
SebCerazy
Iron Contributor
Test environment, I assume VMs. Even in test you should not have anything on DC as apart from AD (plain & simple)
Error means exactly this, the DNS is incorrect (for the website), and you also need to have DNS in SAN
Error means exactly this, the DNS is incorrect (for the website), and you also need to have DNS in SAN
Marius_Roma
May 15, 2023Brass Contributor
Many thanks for your message.
On my DC I have only AD and CA, and, as you say, the certificate is missing a SAN.
In the meantime I made some further investigation and I found a complete, working solution on page https://lalmohan.co.nz/2020/02/10/create-and-install-a-san-certificate-subject-alternative-name-in-windows-without-third-party-tools/?blogsub=confirming#subscribe-blog
I hope it can be useful for other people.
Many thanks, anyway
- SebCerazyMay 15, 2023Iron ContributorAD CA should ALWAYS be on a separate server
- SebCerazyMay 15, 2023Iron ContributorYou need to setup correct template for webserver, where the fields are filled & not auto created
"Proceed without enrollment policy" is not correct setup (it will work, just not the right way to do it) - tcarnalSep 29, 2023Copper Contributor
Thank youMarius_Roma
Your link worked perfect for me and solved my problem.