Removed MS Cert Authority



Hello all,

First off a thank you to all who respond!

The issue is I'm receiving the following error messages on a recently
installed DC in one of my child domains. The errors seem to occur every 8
hours and will add an entry in the App log and System log. Below are the
errors. The DC is the first W2k3 DC in that child domain. All domains are at
2000 native and the forest is at 2000. The parent domain is running 2 W2k3
DC's.

Application Log:

Event Type: Error
Event Source: AutoEnrollment
Event Category: None
Event ID: 13
Date: 5/12/2005
Time: 1:51:08 AM
User: N/A
Computer: 123
Description:
Automatic certificate enrollment for local system failed to enroll for one
Domain Controller certificate (0x800706ba). The RPC server is unavailable.

System Log:

Event Type: Error
Event Source: DCOM
Event Category: None
Event ID: 10009
Date: 5/12/2005
Time: 1:51:08 AM
User: NT AUTHORITY\SYSTEM
Computer: 456
Description:
DCOM was unable to communicate with the computer SILVERBACK.xyz.com using
any of the configured protocols.

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.


Silverback is the name of the Certificate Authority I installed for testing
SSL certs for my Exchange rollout. I have since then removed the Cert
Authority and removed the server from the domain approx 3 months ago.

I believe this has something to do with the Certificate Authority being
removed and I possibly need to go into all the servers and manually remove
the root certificate or some other configuration parameter.

Any input is greatly appreciated.

J


.



Relevant Pages

  • Re: Remote Web Workplace Stopped Functioning
    ... When I changed our certificate, I found that I had to go into add/remove ... components and make sure certificate authority was enabled. ... SBS and inside the ISA server. ...
    (microsoft.public.windows.server.sbs)
  • Re: Encrypting ADO/RDS connection between servers
    ... trust the CA that issued the certificate. ... Certificate Authority can be ... installed on W2K server - do a search at MS site. ... between the two computers and use pre shared key for authentication. ...
    (microsoft.public.win2000.security)
  • Re: removing Windows 2008 DC after demotion, time for ntdsutil
    ... Getting autoenrollment failures for certificate enrollment of new clients. ... it was a cert server. ... Also, if you need to remove a CA (Certificate Authority) from the domain, Please read the following related articles: ... How to remove manually Enterprise Windows Certificate Authority from Windows 2000/2003 Domain ...
    (microsoft.public.windows.server.active_directory)
  • Re: asp.net application - http to https
    ... SSL certificate with my own certificate authority created on a windows ... If your goal is to authenticate your server you have to ... another private lan to access our application via https? ...
    (microsoft.public.dotnet.framework.aspnet)
  • RPC over HTTP, Microsoft solution
    ... Exchange Server 2003 RPC over HTTP Deployment Scenarios ... Place a check in the box next to 'Certificate Services' and click 'Yes' ...
    (microsoft.public.exchange.setup)