Certificate enrollment web servce GPO enablement failure
2012 std r2
added certificate authority role web services
configuring via library hh831625
i have verified iis has default site adpolicyprovider_cep_kerbos , copied uri <a href="https:///adpolicyprovider_cep_kerbos/service.svc/cep">https://<server>/adpolicyprovider_cep_kerbos/service.svc/cep
i added domain gpo per directions certificate enrollment policy web services. editing gpo computer->policies->windows settings-> security settings->public key policies. double click certificate services client - certificate enrollment policy. enable policy , add certificate enrollment policy list. paste above uri, authentication type "windows integrated". when validate server following error:
an error occurred while obtaining certificate enrollment policy
uri:https://<server>/adpolicyprovider_cep_kerbos/services.svc/cep
error: remote endpoint not exist or not located. 0x803d00d (-21434855939 ws_e_endpoint_not_found)
help final validation appreciated. logged on administrator domain admin rights , enterprise admins rights
john lenz
hi,
whether urls accessed when opened ie?
and should add only one url , check whether work.
hope below link helpful:
manage certificate enrollment policy using group policy
http://technet.microsoft.com/en-us/library/dd851772.aspx
if are technet subscription user , have feedback on our support quality, please send feedback here.
regards, yan li
Windows Server > Group Policy
Comments
Post a Comment