Direct Access and PKI-migration

B

Butters101

Hello everybody,

we have a two tier enterprise PKI based on Windows Server 2008 and we also have a Direct Access -Cluster based on Windows Server 2012R2. We have about 600 DA-clients.

We think about setting up a parallel PKI in Windows 2016 and to decommision the old PKI after a time. We use computercertificates for authentification. When we have the new PKI we have to change the certificate to the new CA in the DirectAccess configuration (Step2 RasServer -> Authentification). When we do this can the clients still connect? Or what can we do to ensure that clients still can connect?

Here is a picture of the configuration step.

1303571.png


Hopefully I picked the right forum. Thanks for your help

Greetings Butters

Continue reading...
 
Back
Top Bottom