Is there an option to auto-enroll a user certificate once and set a configuration forcing the same certificate to appear on other computers?

Anonymous
2023-10-17T11:10:50+00:00

Hi,

I'd like to know if I can configure a user certificate to "follow" the user instead of re-enroll on every machine.
Or is it possible to re-enroll with the key pair?

Thanks in advance,

Shlomit.

Windows Server | Identity and access | Certificates and public key infrastructure (PKI)

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Anonymous
    2023-10-18T03:23:20+00:00

    Hello Shlomit S,

    Thank you for posting in Microsoft Community forum.

    You can configure user certificate auto-enrollment via GPO, this can enroll user certificates for AD users.

    Or you can enroll a user certificate manually, then set logon script for this user to install this certificate when he/she logs on any machine.

    I hope the information above is helpful.

    If you have any question or concern, please feel free to let us know.

    Best Regards,
    Daisy Zhou

    1 person found this answer helpful.
    0 comments No comments