Subscribe to Windows IT Pro
August 23, 2002 12:00 AM

Certificate Templates

Windows IT Pro
InstantDoc ID #26119
Rating: (0)

Certificate templates let you specify the types of certificates that users or computers can request from your Certificate Authority (CA). A certificate template limits the purposes (e.g., email, smart card logon, Windows 2000 Encrypting File System—EFS—IP Security—IPSec) for which you can use certificates that you base on that template. You can also edit a template's ACL to restrict the users or computers who can request certificates based on the template. Because the users, computers, and CA are all part of a Win2K Active Directory (AD) forest, the CA can rely on Kerberos to identify and authenticate the users or computers who make certificate requests, thereby enforcing the certificate template’s ACL.

You can use Group Policy to configure authorized computers to automatically request a certificate from the CA according to the IPSEC certificate template. That way, only those computers can obtain a certificate from the CA and use that certificate to authenticate and communicate with a specified server through IPSec.

Related Content:

ARTICLE TOOLS

Comments
    There are no comments to display. Be the first one!
You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.