Thursday, May 31, 2012 5:42 PM
I setup AD CS on a domain server and then configure the server as a enterprise CA, I then to the default GPO autoenrollment for the users. After this i then assigned a certificate template to the enterprise CA on the domain server. When I add the authenticated user group I want to permit for autoenrollment I only have the options for Read, Enroll, allow. I do not have the option for allow Autoenroll in the permissions.
I have bee using the technet article as a guide.
Thursday, May 31, 2012 6:11 PMModerator
Security sub forum would be the best place to ask this question.
Press any key... What the ... Where's any key ?
This posting is provided "AS IS" with no warranties or guarantees and confers no rights.
About Me ?
Friday, June 01, 2012 2:59 AM
Most likely the certificate template you are using is version 1. Try duplicating the template to generate version 2.
You can use the links below for more information:
Friday, June 01, 2012 12:40 PM
Thanks guys I'll resubmit to the security forum if the v2 template does the same thing