CA Problem enroll user certificate on Behalf

  • Thread starter Marco Milone - MCP -MCSA
  • Start date
M

Marco Milone - MCP -MCSA

Hi all,

i have a 3rdy application (Kaspersky MDM) integrated with my PKI (Windows CA) that use a Domain account (like administrator) to request user certificate for domain user. The application Works fine if use the default "User" certificate.

I cloned the User certificate with new name and new duration (5years). When try to use this new certificate, the request couldn't completed whit error:


CertificateServicesClient-CertEnroll error 13

Certificate enrollment for XXXX\Administrator failed to enroll for a User3Years certificate with request ID 361 from DC-XXXX-01.xxxx.priv\telt-DC-XXXXX-01-CA (The request was made on behalf of a subject other than the caller. The certificate template must be configured to require at least one signature to authorize the request. 0x80094806 (-2146875386 CERTSRV_E_BAD_RENEWAL_SUBJECT)).


If i try to use the default "User" template, all works fine.


How can solve this problem?

Continue reading...
 
Back
Top Bottom