Certificate enrollment "certificate types not available"


hi all,

i'm having issue our enterprise certificate authority , allowing computers request certificate via certificates mmc.  i'm testing trying test certificate enrollment configuration 2 machines in own ou in ad (to minimize gp related variables).  in terms of auto enrollment in group policy, created gpo enabled certificate services client - auto enrollment , certificate enrollment policy ou 2 machines in allow work (this seems working other computer on network claims auto-enrollment isn't available).

right now, if open mmc certificates snap-in on local computer of 1 of test machines, right click on certificates > tasks > automatically enroll... standard "before begin" screen.  i click next , screen says "certificate types not available" (sorry, cannot post screenshots @ time).  if click "show templates" checkbox, can see of templates (including computer template created) don't show available.

i'm completely baffled on next steps.  it has simple (i'm new ad ca's).  just wondering if had ideas on how make cert available select?  seems security issue i'm not sure.

the goal is permit use in 802.1x authentication scenario for wireless (no wireless involved @ moment, want test cert enrollment @ moment).

thanks!

nick

you need check 2 things:

1) make sure target computers have read, enroll , autoenroll permissions on template.

2) make sure if template assigned ca.


my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com
check out new: powershell fciv tool.



Windows Server  >  Security



Comments

Popular posts from this blog

Group Policy Event ID 1058 Error Code 1326 (The user name or password is incorrect)

Suspicious event log Event ID: 4905

DCOM received error "2147746132" from...