one CN for multiple servers in a certificate?


hi there,

i got question whole certification thing. know, can build certificate 1 commonname , multiple subject alternate names (san). that's fine. have question following situation:

i have 3 servers using dns roundrobin (rr). if connect name rdc.contoso.com, rr connected 1 of tree servers in background. that's okay. have generate, request , issue 3 certificates same common name. possible generate 1 certificate 1 common name (rdc.contoso.com) 3 servers (server1, server2 , server3)?

we have issuing ca, think have generate certificate on server , deploy server1, 2 , 3, right?

thanks helping me,

ueruleuem

yes, can generate certificate exportable private key , import certificate these servers. risk if certificate revoked, service unaccessible until replace certificate on nodes. 3 different certificates (with same subject) service unaccessible requests (that redirected host revoked certificate).
my weblog: http://en-us.sysadmins.lv
powershell pki module: http://pspki.codeplex.com


Windows Server  >  Security



Comments

Popular posts from this blog

Group Policy Event ID 1058 Error Code 1326 (The user name or password is incorrect)

Suspicious event log Event ID: 4905

DCOM received error "2147746132" from...