Quantcast
Channel: Group Policy forum
Viewing all articles
Browse latest Browse all 19997

Certificate enrollment web servce GPO enablement failure

$
0
0

2012 Std R2

Added certificate authority role with web services

configuring via library hh831625

I have verified that IIS has the default site ADPolicyProvider_CEP_Kerbos and I copied the URI <a href="https:///ADPolicyProvider_CEP_Kerbos/service.svc/CEP">https://<server>/ADPolicyProvider_CEP_Kerbos/service.svc/CEP

I added a domain GPO per directions Certificate Enrollment Policy Web Services. I am editing the GPO for Computer->Policies->Windows Settings-> Security Settings->Public Key Policies. I double click Certificate Services Client - Certificate Enrollment Policy. I enable the policy and ADD certificate enrollment policy list. I paste the above URI, Authentication type is "Windows Integrated". When I validate server I get the following error:

An error occurred while obtaining certificate enrollment policy

URI:https://<server>/ADPolicyProvider_CEP_Kerbos/services.svc/CEP

Error: The remote endpoint does not exist or could not be located. 0x803d00d (-21434855939 WS_E_ENDPOINT_NOT_FOUND)

Help with this final validation is appreciated. Logged on as administrator with domain admin rights and enterprise Admins rights


John Lenz


Viewing all articles
Browse latest Browse all 19997


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>