Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Windows server 2016 deploys PKI and Certificate Services

2025-04-06 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)06/02 Report--

In the Windows server 2016 operating system, the conditions that need to be met to install Certificate Services are:

1. Have a fixed IP address

two。 Domain environment (not required, but it is not necessary for the domain environment to manually add the certificate service itself after installing the certificate service)

3. Try to use two servers (dc1, dc2).

In Windows server 2016 operating system, certificate service is not the default service for Windows. You need to add certificate service manually after system installation. The specific steps for DC1 are as follows:

1. Open Server Manager and click add roles and Features

two。 In the before you start window, select next

3. Select role-based and feature-based installation in Select installation Type. In the Select Target Server window, select the current server in the server pool, and click next

4. In the Select Server role window, select the Active Directory Certificate Services check box, and in the pop-up add roles and Features Wizard dialog box, click add Features and click next

5. To keep the default, in the Select role Services window, select the Certificate Authority and Certificate Authority Web enrollment check boxes

6. Leave the default until the installation is complete, click close

7. Click the Notification button on the server and select configure Active Directory Certificate Services on the target server from the expanded menu

8. Keep the default until the configuration is complete

Now that DC1 has been configured, configure it on DC2

1. Install the web service role

two。 Open the IIS management window, select the server name on the left, and double-click Server Certificate in the middle pane

Next, use the browser to access the certsrv virtual directory and submit the application

1. Copy all the contents of the certificate application

two。 Use a browser to access http://ip/certsrv"

If this happens, just choose to add.

This is the certificate you just downloaded.

Next, just bind the certificate on the IIS manager

Next, use the client to access the default website of the second DC

The interview has been successful and the experiment has been completed

May we make progress together on the road of learning!

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report