CA autoenroll



Int'l Aromatics
07-09-2005, 11:54 PM
i am responsible of a network which is described as follows:
4 sites, (1,2,3,4) site (1) is center of replicatin to sites (2,3,4), while
it have a high speed wan to site (2), the wan connection to sites (3,4) is
some how slow with high latency.
which forced me to use smtp site links as replication failed using IP site
links, which lead me to install an enterprise CA, i did it before and
everything was working ok, this time i face an autoenrollment access denied
error which i fear will result in a problem in smtp replication.

do i have a work around for this error? & what might be causing it?

i know it might seem an Active directory question but it is replication is
working ok between site (1,2) and also i got CA issuing cert's for basic EFS,
the Root DC, & a Win XP computer, but i don't know why it isnot issuing for
the other DC's?

help is grealty appeciated as i have two sites (3,4) not replicating to root
DC, thanks

--
Eng. M William
--
Eng. M William

Int'l Aromatics
07-09-2005, 11:54 PM
also i would like to add that i tired manually to enroll the DC certifiacte
also to get an erro saying that this dc doesn't have permission to request a
certificate form that CA

"Int'l Aromatics" wrote:

> i am responsible of a network which is described as follows:
> 4 sites, (1,2,3,4) site (1) is center of replicatin to sites (2,3,4), while
> it have a high speed wan to site (2), the wan connection to sites (3,4) is
> some how slow with high latency.
> which forced me to use smtp site links as replication failed using IP site
> links, which lead me to install an enterprise CA, i did it before and
> everything was working ok, this time i face an autoenrollment access denied
> error which i fear will result in a problem in smtp replication.
>
> do i have a work around for this error? & what might be causing it?
>
> i know it might seem an Active directory question but it is replication is
> working ok between site (1,2) and also i got CA issuing cert's for basic EFS,
> the Root DC, & a Win XP computer, but i don't know why it isnot issuing for
> the other DC's?
>
> help is grealty appeciated as i have two sites (3,4) not replicating to root
> DC, thanks
>
> --
> Eng. M William
> --
> Eng. M William


CA autoenroll