Share via


ADCS Documentation

Following steps/documents will be helped for Migrations, Troubleshootings & Transitions...
**

**

Sl Nos  Description 
 1  Document the PKIVIEW.MSC ( All tabs snaps)

 2  Login each CA server & Document the "certutil -getreg -v"

 3  Document the "Cert Publishers" group Membership.

 4  Document the each Capolicy.inf

 5

 Document the each CDP/AIA repository.

 6  Document the snaps of each CDP/AIA repository from extension tab.

 7  Document the "certutil -getreg ca\ParentCAMachine" from all the SUB CAs"

 8

 Document the Issued Templates from the issuing CAs using

>> certutil.exe –catemplates > catemplates.txt and press ENTER.

>> Verify that the txt file,

 9

 Record the CA's CSP and signature algorithm.

>> Type certutil.exe –getreg ca\csp\* > csp.txt and press ENTER.

 10 Document the ROOT CA "certutil -enterprise -viewstore Root" 
 11

Need to test & document the CRL & AIA URLs status.

>>certutil -url <URL>

 12  Document the "certutil -config - -ping & certutil -dump