Monitoring 2003 Certificate Services
-
sexta-feira, 11 de maio de 2012 13:47
I asked this question under the system center operations manager forum but did not get a great response so posting here. What tool or script do most use for monitoring the overall health of 2003 CA infrastructure ? I know this is not a SCOM forum so I will not harp on about it but there doesn't seem to have been a MP created for 2003 CA by the product team. What have people on this forum generally used is it just camonitor.vbs ?
I am wanting to monitor the overall health of CA not just certificate expiry. So things such as CA errors, CA database growth, service monitoring etc.
Todas as Respostas
-
sexta-feira, 11 de maio de 2012 10:43
I asked this question under the system center operations manager forum but did not get a great response so posting here. What tool or script do most use for monitoring the overall health of 2003 CA infrastructure ? I know this is not a SCOM forum so I will not harp on about it but there doesn't seem to have been a MP created for 2003 CA by the product team. What have people on this forum generally used is it just camonitor.vbs ?
I am wanting to monitor the overall health of CA not just certificate expiry. So things such as CA errors, CA database growth, service monitoring etc.
- Mesclado Elytis ChengModerator segunda-feira, 14 de maio de 2012 06:50
-
sexta-feira, 11 de maio de 2012 11:59
For monitoring, SCOM is the monitoring solution for Microsoft.
Maybe just you will need to know why to monitor exactly.
For that, I would recommend asking them here:http://social.technet.microsoft.com/Forums/en-US/winserversecurity/threads
This posting is provided "AS IS" with no warranties or guarantees , and confers no rights.Microsoft Student Partner 2010 / 2011
Microsoft Certified Professional
Microsoft Certified Systems Administrator: Security
Microsoft Certified Systems Engineer: Security
Microsoft Certified Technology Specialist: Windows Server 2008 Active Directory, Configuration
Microsoft Certified Technology Specialist: Windows Server 2008 Network Infrastructure, Configuration
Microsoft Certified Technology Specialist: Windows Server 2008 Applications Infrastructure, Configuration
Microsoft Certified Technology Specialist: Windows 7, Configuring
Microsoft Certified Technology Specialist: Designing and Providing Volume Licensing Solutions to Large Organizations
Microsoft Certified IT Professional: Enterprise Administrator
Microsoft Certified IT Professional: Server Administrator
Microsoft Certified Trainer -
sexta-feira, 11 de maio de 2012 13:48unfortunately they never released a SCOM management pack for 2003 CA so was looking at alternatives.
-
segunda-feira, 14 de maio de 2012 07:13Moderador
Hi,
CAMonitor.vbs enables you to monitor the status and health of a Certificate Authority (CA) server.
The script runs only on online CAs; it cannot be run against offline CAs. The script will automatically check the status of the CA certificate and the CRL (client revocation list) of parent CAs (and parents of parents, all the way to the root CA). The script must be run on the CA itself; it is not designed to perform checks remotely. CAPICOM 2.0 or later must also be installed on the server.
For details:
Certificate Authority Monitor
http://gallery.technet.microsoft.com/scriptcenter/164e8047-d7bf-4774-91cf-90d46b82e725#content
Security Update for CAPICOM (KB931906)
http://www.microsoft.com/en-us/download/details.aspx?id=3207
Hope this helps!Best Regards
Elytis ChengIf you are TechNet Subscription user and have any feedback on our support quality, please send your feedback here.
Elytis Cheng
TechNet Community Support
- Marcado como Resposta Elytis ChengModerator quinta-feira, 24 de maio de 2012 08:55
-
segunda-feira, 21 de maio de 2012 09:29Moderador
Thanks for posting in Microsoft TechNet forums.
As this thread has been quiet for a while, we assume that the issue has been resolved. At this time, we will mark it as ‘Answered’ as the previous steps should be helpful for many similar scenarios. If the issue still persists, please feel free to reply this post directly so we will be notified to follow it up. You can also choose to unmark the answer as you wish.
BTW, we’d love to hear your feedback about the solution. By sharing your experience you can help other community members facing similar problems. Thanks for your understanding and efforts.
Best Regards
Elytis Cheng
Elytis Cheng
TechNet Community Support

