Share personal certificate of LDAPS server to Clients

Costas Christodoulou 21 Reputation points
2020-04-16T10:01:33.467+00:00

We have enabled LDAPS on the DCs and that means that each of them has it own personal certificate.
Some application owners (java untill now) request from us that pesonal certificate of the domain controller in order to embended it to their application.
I would like to ask if to give the personal certificate of a domain controller to a member server is a valid practice and if that could be mean a security issue.

Thank you

Community Center | Not monitored
0 comments No comments
{count} votes

Answer accepted by question author
  1. Leon Laude 86,086 Reputation points
    2020-04-16T10:50:02.227+00:00

    Hi,

    Q&A currently supports the products listed in right-hand pane (more to be added later on)

    You can reach the experts in the dedicated Directory Services forum over here:
    https://social.technet.microsoft.com/Forums/en-US/home?forum=winserverDS

    (please don't forget to mark helpful replies as answer)

    Best regards,
    Leon

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.