|
Part I design and Planning
|
bet | 11/14 | Sana | 03.10.2020 | Hajmi | 1,47 Mb. | | #11984 |
Now that we actually have a Key Recovery Agent published in Active Directory (any KRA certificate issued by the CA is published to the CN=KRA container in Active Directory), we can proceed to enable Key Archival on the CA.
To enable Key Archival:
1. Open the Certificate Services MMC. Right-click on the name of the CA in the tree-view pane and then select Properties from the context menu.
2. Select the Recovery Agents tab, and select
|
| |