Windows Vista Tips

Windows Vista Tips > Newsgroups > Windows Server > Server Security > enterprise vs stand-alone CA?

Reply
Thread Tools Display Modes

enterprise vs stand-alone CA?

 
 
B L Muzzy
Guest
Posts: n/a

 
      03-20-2009
I want to create a Certificate Authority on each of 2 DCs in a win2003
Active Directory domain. I'm not sure if it makes better sense to set up
Enterprise Root CAs or Stand-alone root CAs. The clients will be coldfusion
web apps that know nothing of windows domains. So they won't be able to
participate 'automatically' in the certificate enrollment available with
Enterprise CAs.

I want to have 2 CAs for failover. Each client specifies the DC that it
will use for user creation & password changes explicitedly. That is, i
can't tell them to authenticate with the domain, they have to authenticate
with and communicate over SSL with a specific DC. So i want 2 for
redundancy. If one is the root and suffers hardware failure would a
subordinate function OK or will it choke because it has no root? In which
case I'd think it would be better to make each their own root CA to be fully
independent.

I'd appreciate any advice. Thanks,

Bob Muzzy


 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Decommisioning Stand Alone Enterprise CA tke402 Windows Server 1 04-10-2009 01:35 PM
RE: Enterprise W2k3/Enterprise Exchange to SBS migration? Manfred Zhuang [MSFT] Windows Small Business Server 0 02-27-2008 09:42 AM
Migrate Enterprise root authority CA to stand-alone root CA Vlad Nevsky Server Security 0 12-13-2005 11:57 AM
What diffrent between Stand-alone CA and Enterprise CA Woody Kee Server Security 2 11-09-2005 08:41 AM
2003 Standard CA Stand Alone Vs. Enterprise Griff Server Security 6 02-17-2005 02:54 AM



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59