Re: Contacts and PKI Certificates

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



I have no idea how to set this via the various admin GUI tools. I do know
you can set these programmatically by loading the binary data in the X509
cert into the userCertificate attribute. I have no idea if you would want
to attempt to do this via an LDIF script or some other type of program.

Perhaps someone will know of a UI tool that exposes a friendlier way to do
this.

Joe K.

--
Joe Kaplan-MS MVP Directory Services Programming
Co-author of "The .NET Developer's Guide to Directory Services Programming"
http://www.directoryprogramming.net
--
"Kenneth Sims" <KennethSims@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:856839E0-A8ED-42C6-8909-0522D43CBCB7@xxxxxxxxxxxxxxxx
I want to associate some PKI certificates with some newly created contacts
I
imported into Active Directory. When I click on the properties of the
contact I do not see a tab for Digital ID or Published Certificates, but
if I
click on Start > Search > Find People in Active Directory and then look at
the properties of a contact I have a tab for Digital ID for the
respective
contacts. However the option to import certificate is grayed out. I
checked
MSDN to see what attributes were available for Contacts and it indicates
X.509 and User-Cert are available attiributes. What am I missing? Can
you
associate a cert with a contact? I'm using an account with Enterprise
rights.


.



Relevant Pages

  • Re: request page I cant have -> goes to login
    ... You can also programmatically set HttpContext.SkipAuthorization to true ... Joe Kaplan-MS MVP Directory Services Programming ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ...
    (microsoft.public.dotnet.framework.aspnet.security)
  • Re: Update Lockout user attribute Programmatically
    ... You can't programmatically lock a user in any other way than by generating ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ... the account, many other call for disable account. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Manage AD via web
    ... Joe Kaplan-MS MVP Directory Services Programming ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ... Management over ... web needs to be required. ...
    (microsoft.public.windows.server.active_directory)
  • Re: LDAP Query
    ... If you really want to do some LDAP programming, you need a more serious tool ... to help you model and test your queries. ... Co-author of "The .NET Developer's Guide to Directory Services Programming" ...
    (microsoft.public.windows.server.active_directory)