CA server set up

For the user, in practical application is mainly achieved through a variety of security technology certificate, the certificate to be issued by the authority of the certification authority CA.
1, find the "role" in the "Server Manager", and then add the role of
CA server set up
2, the other is the default
3, in addition to the default certificate authority, but also need to install the "Certificate Authority web registration" component and open interface click the "Add role services required 'button to install iis role, so that the user can use the browser to request a certificate
CA server set up
4, CA independent installation type selection, if on a domain controller to set up the CA select enterprises and enterprises issuing root CA certificate the object is limited to domain user
CA server set up
5, CA type selection "root CA"
CA server set up
6, select "new private key" set "private" in this for the CA's private key, the private key CA must have before they can issue certificates
CA server set up
7, the default method is created using a private key encryption algorithm is RSA, key length 2048, uses a hashing algorithm SHA1
CA server set up
8, CA name default value
CA server set up
9, CA default period of five years
CA server set up
10, the location of the certificate database storage the default value is
CA server set up
11, web server select role services in the default value
12, confirm to begin the installation correct and
after 13 to complete the installation, authority through the "management tool" in the "certificate "To manage CA
CA server set up
14, open the browser and enter the url ie after restart" HTTP: // ip / certsrv ", to open the certificate request page
CA server set up

Guess you like

Origin blog.51cto.com/13423226/2412926