Hi all,
I have an interesting dilemma. We were originally in a workgroup
environment. My computer running Win2K server had certificate services
installed and I have issued several web certificates to users in our
company.
Now recently the admin added a new Windows 2003 Domain Server and I have
been asked to join it. No doubt when I went to change my computer domain it
would not allow me because of Certificate Services.
Do I have any remote chance at all of joining the domain at this point?
Un-installing CS, joining the domain and re-installing CS? Will that
invalidate my certs? I will be needing to issue new certs too. My CS has
been setup as a Stand-Alone Root CA and the only kind of certs I have issued
are for our Intranet website: both IIS cert and end-user client certs.
Please help, I know I can un-install CS and re-install using the same set of
keys saved on this computer. The only thing is will changing the domain
membership cause any issues.
Also, I was wondering is it possible to export my current CA keys to the
Windows 2003 Server and set that up as a CA? Will that work without needing
to update our web server certs and all end-user client certs?
Any help is greatly appreciated.
TIA,
Param
|