emcee. I say Windows Server 2012. Exam for 12. Configuring advanced windows Server 2012. Service's Mal. You're six.
We're gonna be talking about implementing archive directory certificate Service's
lesson. Wanna speaking? I overview. We're gonna look at overview of P K I.
Lesson two's deploying. See a certification authority,
less interest, deploy, and money is certificate templates.
Then we have a lap because deployment. Configuring the sea, eh, Archy?
Let's they want p k I overview. We're gonna look at what he's speaking. I
we're gonna look at what are the components of a picky I solution
we're gonna look at once they see a the overview of active director certificates. Serve a role in 2012
on new features of active director certificates Service the Windows server 2012.
what is speaking? I probably key infrastructure. What does he do?
Picker includes encryption technology processes. Service is on software.
The assistant organization Security Communication
on business transactions.
p k I provides confidentiality,
authenticity, unknown repudiation.
It gives you all that.
I mean, the information being sent. It's confidential.
That information has not been modified as integrity.
That's actually coming for that person is authentic. Unknown. Repudiation means are whoever sense it. They cannot deny the sentence attached to them.
What are the components of a picky I solution? Include this advocate certification authority.
Sufficient authority issues are managed. Dichter Certificate for computers
If you were, you deploy the sea a certification authority. You actually deploy picky I'II organization.
Then we also have the digital certificates.
This is like your electronic passport.
It proves your identity.
The digital certificates as electronic credentials. The associated with a public key on a private key
can be used to authenticate uses. Another devices on the network.
Also details that you can make. The software code is wrong from a trust that sauce
So you come template. Describe the content and properties of a digital certificates.
For example, when requested set of a for sale Get from a active directors Certificates Service's Enterprise C A.
Whoever is requesting so you'll be able to depend on is our access to select a variety off certificate type based on the certificate templates.
Example would be use up
other one. Cedric A relocation laces out our components off p k I.
Our circle of evocation list are completely Italy Signed. Lease does, sir. Ticket has been revoked.
So is used to verify certificate the vocation status.
are part of online's certificates Status protocol
these rules service, Windows Server 2000 and 2012.
for example, I responder come receiving request to check for revocation of his certificate.
We are required Declined to download the entire c r l.
So the online responders speed up
revocation status off his certificates,
Then we are public. He probably keep based application and service. Is
this application of service Is our support public key encryption.
Then we have certificated of Senate game management tools.
This management tools management tools
can be Come on, Lyle. Gooey based.
they can use. You can use the configure. See, ace
used to recover archive Private key.
We can use this seconds circuit and CIA management tool to import and export keys on certificates.
We can use them to publish.
Um, see, it says get in. Sierra.
Also manage issues, certificates,
other components includes
authority, information, access,
you know, see? Aye, aye. Aye. And cdp
um this determining location where I see a syndicate can be found, I'm validated.
Then we have the hardware security module.
There's an optional secure cryptographic hardware device.
This gun accelerated cryptographic processes for managing digital certificates
in the eyes. I really secure the environment. You we have an HSM.
You just seem normal is attached to a computer.
This is option. Are you don't thought that when I see a
it's C. A Is a well designer. Islay trusted service in an enterprise. They provide users and computer with certificates they also manage on published e C R l.
Sometimes they respond to a C S B R requests.
you can start to see a environment by deploying active director set of service Active directors Certificate Service's Roll on Windows Server 2012
When you saw the foresee established U P. K. I. In the Network
Overview Active director said that gets service server room we in December 2012.
The role service off a. D. C. S included. See a certificate authority.
You see it's entity that issue certificates to use this computer in the service is
see a Web in romance
allow it is a matter to issue and renew certificate for uses
by going to the webs of Secure website.
Also include online responder. We discuss it
think includes Mike Own Sorry e cruise network device and Roman service.
Move with this component rotter switches and other network devices can obtain certificates from a picky aye or active director said Forget service is
you also are syndicate and Roman Web service. Allow Uses
two in a row for certificate online.
The secure website It can,
new futures of academics said to get seven the Windows Server 2000 and 12.
If fully integrates with server manager that from several manager, you can install it there.
You can also manage,
um says Okay, service is using powershell.
Yeah, that's also included in
um, Windows Server 2012.
new surgical template version.
Also support for automatic renewal off certificates for Non Domi
Support for virtual smart card is also available.
You know, we have probably can privacy a public See A is something like very son commercial.
These are trusted by many external clients.
You have to apply for them. They expensive. Then we have the internal privacy, eh? That's when you set up within your organization