Geographically Fault tolerant CAs
hey all,
we setting system offer client certs users of our web service. have 2 data centers, 1 primary , 1 failover. have set offline root , issuer in each datacenter. semi regularly switch services other datacenter run time during maintenance or other events , of course there disaster recovery.
given that, in either datacenter when need turn new web client cert. given shared root, can issue client cert either issuing ca , accepted web servers in either datacenter. requires access crl, manage either copying crls on 'manually' or adding crl access point cert speaks directly other dc. suggestions on best way appreciated not focus of question.
my question is, significant event, lose 1 of issuing servers. @ end of published crl, lose certs issued ca. security standpoint don't turn off crl checking (or make expiration long achieve same thing). looking @ options.
1. restore backup new server. require rebuilding domain , server (assuming complete loss of datacenter). possible in event domain gone (the 2 datacenters not share ad forest)
2. turn off crl checking (not option)
3. have seen mention of using 'down' ca's private key resign , extend crls haven't seen details how that?
4. think there must better way. how people address this?
thanks
ej
-- cornasdf - http://cornasdf.blogspot.com
hi,
my suggestion restore server backup.
another option set cluster environment. details, please see http://technet.microsoft.com/en-us/library/cc742424(ws.10).aspx
this posting provided "as is" no warranties, , confers no rights. please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.
Windows Server > Security
Comments
Post a Comment