ADCS : CA cert removal
using certutil or other means , possible 1) revoke cert issued ca 2) remove revoke cert local computer store on pc
hi,
>>1) revoke cert issued ca
you may use command below revoke certificate 1 one. revoke of issued certificate, may need write script automate process.
https://technet.microsoft.com/en-us/library/cc732443(v=ws.11).aspx#bkmk_revoke
>> 2) remove revoke cert local computer store on pc
there group policy can achieve goal:
renew expired certificates, update pending certificates, , remove revoked certificates enables autoenrollment certificate renewal, issuance of pending certificate requests, , automatic removal of revoked certificates user's certificate store.
https://technet.microsoft.com/en-us/library/cc731522(v=ws.11).aspx
steven lee please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com.
Windows Server > Security
Comments
Post a Comment