deploy and configure an enterprise root ca & subordinate ca in windows server 2012 r2

44
WELCOME TO MY PRESENTATION

Upload: barek-it

Post on 08-Apr-2017

360 views

Category:

Technology


1 download

TRANSCRIPT

Page 1: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

WELCOME TO MY

PRESENTATION

Page 2: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Presented by: Presented to:

Name: XID: M-110303031Jagannath University, Dhaka-1100

Project ConsultantNetworking TechnologyJagannath University, Dhaka-1100

Page 3: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

PRESENTATION ON

DEPLOY AND CONFIGURE AN ENTERPRISE ROOT CA

AND SUBORDINATE CA

Page 4: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

ENTERPRISE ROOT CA

An enterprise root CA is certificate server that has signed its own certificate, is installed on a computer that is a member of the domain, and can issue certificates based on templates stored in Active Directory.

Page 5: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

The Advantage of Enterprise Root CA Is TO :

We can configure issuance policies based on Active Directory properties. This means that an enterprise CA can automatically issue a specific type of certificate to a user, computer, or service without requiring the manual approval of an administrator.

Enterprise root CAs are suitable for organizations with fewer than 300 users who only need a single CA and do not need to deploy a complex CA hierarchy

Page 6: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

PRE-REQUISITE TO CONFIGURE ENTERPRISE

ROOT CA

On Domain Controller Install the Active Directory Certificate Service

Page 7: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

INSTALL THE ACTIVE DIRECTORY

CERTIFICATE SERVICES ROLE

Page 8: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Open Server Manager→Manage →Add Roles and Features

Page 9: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select a Server from the server pool and then click next.

Page 10: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the Active Directory Certificate Services and then click next.

Page 11: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the role services to install for Active Directory Certificate Services and click next.

Page 12: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the role services to install for Web Server(IIS) and click next.

Page 13: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

To install the following roles, roles services on this server and click install

Page 14: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Successfully completed installation progress and then close

Page 15: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Configure Active Directory Certificate Services .

Page 16: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

On the AD CS Configuration Wizard ensure that the EUROPE\administrator is selected.

Page 17: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Now select Role Services to configure and click next

Page 18: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

On the setup type page select Enterprise CA and click next.

Page 19: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Specify the name of the CA and then click next.

Page 20: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

TO configure the following roles and features and click configure.

Page 21: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the Certificate Enrollment Web Service and Certificate Enrollment Policy Web Service and click next

Page 22: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the CA name for certificate Enrollment Web Services and then click next

Page 23: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Ensure that Windows Integrated Authentication is selected and click next.

Page 24: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

For specifying a Server Authentication Certificate, click europe-EUROPEMACHINE-CA and click next

Page 25: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Successfully configured Certificate Enrollment Web Service and Certificate Enrollment Policy Web Service and click close

Page 26: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Enterprise Subordinate CA

An enterprise subordinate CA can obtain its signing certificate from a standalone root CA or an enterprise root CA. Enterprise subordinate CAs are able to issue certificates based on certificate templates that are stored in Active Directory.

Page 27: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Pre-requisite to Configure Enterprise Subordinate CA Join a server to a Enterprise Root CA

Domain Controller. Install AD CS Role.

Page 28: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Sign in to Europe Client as europe\administrator with password PTTC$123

Page 29: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Open Server Manager → Manage →Add Roles and Features

Page 30: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select a Server from the server pool and then click next.

Page 31: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the Active Directory Certificate Services and then click next

Page 32: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select the Certificate Authority to install the AD CS and click next

Page 33: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Configure AD CS on this Server

Page 34: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Specify credential to configure role services and click next.

Page 35: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select Enterprise Root CA and click next

Page 36: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Select Subordinate CA and click next

Page 37: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Request a certificate from Parent CA and click next

Page 38: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

TO configure the following roles and features and click configure.

Page 39: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

AD CS Has been configured successfully and click close.

Page 40: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Server Manager Tools Certification Authority

Page 41: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Right click on europe-EUROPECM-CA and click properties

Page 42: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

On the General tab and click Certificate#0 and click view certificate

Page 43: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

Verify the certificate is issued by Europe-EUROPEMACHINE-CA and valid Date.

Page 44: Deploy and Configure an Enterprise Root CA & Subordinate CA in Windows Server 2012 R2

THANKS TOALL