You need to ensure that members of the CertIssuers group can issue, approve, and revoke certificates

Your company has an Active Directory domain. All servers run Windows Server. You deploy a Certification Authority (CA) server. You create a new global security group named CertIssuers.

You need to ensure that members of the CertIssuers group can issue, approve, and revoke certificates. What should you do?

Your company has an Active Directory domain. All servers run Windows Server. You deploy a Certification Authority (CA) server. You create a new global security group named CertIssuers.

You need to ensure that members of the CertIssuers group can issue, approve, and revoke certificates. What should you do?

A.
Assign the Certificate Manager role to the CertIssuers group

B.
Place CertIssuers group in the Certificate Publisher group

C.
Run the certsrv -add CertIssuers command promt of the certificate server

D.
Run the add -member-membertype memberset CertIssuers command by using Microsoft Windows Powershell



Leave a Reply 1

Your email address will not be published. Required fields are marked *


Jim

Jim

The Certificate managers Role can approve certificate enrollment and revocation requests, issue certificates, and manage certificates. This role can be configured by assigning a user or group the Issue and Manage Certificatespermission.

http://technet.microsoft.com/en-us/library/cc753372.aspx