S
S
Satisfied IT2020-02-03 11:59:33
Active Directory
Satisfied IT, 2020-02-03 11:59:33

How to automatically issue a user one certificate for all machines where he logs in?

There is a domain network, user certificates were needed, they raised their certification authority and set up automatic issuance of certificates in group policies. But there was a problem, if the user logs in under his account on another machine, then he receives a new certificate. It turns out on how many PCs the user logged in so many different certificates in his name and received, but I would like the user to receive a certificate when logging in and when logging in to other PCs, he would receive the same certificate there too. Is it real?

Answer the question

In order to leave comments, you need to log in

1 answer(s)
M
mumische, 2020-02-03
specialist @borisdenis

The CA does not store private keys, so the described scenario is not possible. If you need to use one certificate in many places, use a smart card or usb token to store it.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question