Certificate Enrollment Web Service enrollment for multiple forests.

ComputerHabit 1,036 Reputation points
2021-04-08T19:55:07.723+00:00

I've setup Certificate Enrollment Web Service. The document says you can request certs in other forests. The document falls short of HOW to do that. Is there instructions? Seems MS just leaves stuff off all the time.

Right now I'm guessing something like DSPublish the cert chain into the other forest to get things going.

Any help finding the details would be great. Thank you.

AND THESE FREAKING TAGS BULLS*T IS GETTING TO ME>>>> THERE IS NO CA TAG!!!!!!!!!

Windows for business | Windows Server | User experience | Other
{count} votes

3 answers

Sort by: Most helpful
  1. ComputerHabit 1,036 Reputation points
    2021-04-12T16:34:50.143+00:00

    I still can't see certs in other forests. I have no details from Microsoft about this part of their product.

    0 comments No comments

  2. Anonymous
    2021-04-23T09:21:01.223+00:00

    Hello @ComputerHabit ,

    Thank you for posting here.

    Based on my knowledge, for cross forest certificates:

    If there is two-way trust relationship between two forests, we can set up Cross-Forest Certificate Enrollment.
    For more information we can refer to link below.
    AD CS: Deploying Cross-forest Certificate Enrollment
    https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-server-2008-R2-and-2008/ff955845(v=ws.10)

    If there is no two-way trust relationship between two forests, we can set up Cross-Forest Certificate Enrollment.
    For more information we can refer to link below.
    Test Lab Guide Mini-Module: Cross-Forest Certificate Enrollment using Certificate Enrollment Web Services
    https://social.technet.microsoft.com/wiki/contents/articles/14715.test-lab-guide-mini-module-cross-forest-certificate-enrollment-using-certificate-enrollment-web-services.aspx

    Hope the information above is helpful.

    Should you have any question or concern, please feel free to let us know.

    Best Regards,
    Daisy Zhou

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.

    0 comments No comments

  3. David Jenkins 946 Reputation points
    2021-04-23T15:08:25.853+00:00

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.