Active Directory
A set of directory-based technologies included in Windows Server.
6,245 questions
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
Hello!
I have a few expired root CA certs in my internal CA which are still being issued to new machines.
Is it OK to remove these certs from the tabs in ***Enterprise PKI > Manage AD Containers*?**
Also just to test an app that is failing to read the current Root CA, can I remove the expired certs from the server directly?
I understand that the PKI will resend them but I just need a quick test on this.
Those which are flagged as "Not time valid" are safe to be removed from "Manage AD Container" dialogs. Then they will be gone from Certificates MMC snap-in.