Your network contains an Active Directory domain. The relevant servers in the domain are configured as shown in the following table:
Server name
Operating System
Server role
Server1
Windows 2008
Domain controller
Server2
Windows 2008 R2
Enterprise root certification authority (CA)
Server3
Windows 2008 R2
Network Device Enrollment Service (NDES)
You need to ensure that all device certificate requests use the MD5 hash algorithm.
What should you do?
A.
On Server2, run the Certutil tool.
B.
On Server1, update the CEP Encryption certificate template.
C.
On Server1, update the Exchange Enrollment Agent (Offline Request) template.
D.
On Server3, set the value of the HKLMSoftwareMicrosoftCryptographyMSCEP HashAlgorithmHashAlgorithm registry key.