M
Marco Milone - MCP -MCSA
Hi all,
i have a 3rdy application (Kaspersky MDM) integrated with my PKI (Windows CA) that use a Domain account (like administrator) to request user certificate for domain user. The application Works fine if use the default "User" certificate.
I cloned the User certificate with new name and new duration (5years). When try to use this new certificate, the request couldn't completed whit error:
CertificateServicesClient-CertEnroll error 13
Certificate enrollment for XXXX\Administrator failed to enroll for a User3Years certificate with request ID 361 from DC-XXXX-01.xxxx.priv\telt-DC-XXXXX-01-CA (The request was made on behalf of a subject other than the caller. The certificate template must be configured to require at least one signature to authorize the request. 0x80094806 (-2146875386 CERTSRV_E_BAD_RENEWAL_SUBJECT)).
If i try to use the default "User" template, all works fine.
How can solve this problem?
Continue reading...
i have a 3rdy application (Kaspersky MDM) integrated with my PKI (Windows CA) that use a Domain account (like administrator) to request user certificate for domain user. The application Works fine if use the default "User" certificate.
I cloned the User certificate with new name and new duration (5years). When try to use this new certificate, the request couldn't completed whit error:
CertificateServicesClient-CertEnroll error 13
Certificate enrollment for XXXX\Administrator failed to enroll for a User3Years certificate with request ID 361 from DC-XXXX-01.xxxx.priv\telt-DC-XXXXX-01-CA (The request was made on behalf of a subject other than the caller. The certificate template must be configured to require at least one signature to authorize the request. 0x80094806 (-2146875386 CERTSRV_E_BAD_RENEWAL_SUBJECT)).
If i try to use the default "User" template, all works fine.
How can solve this problem?
Continue reading...