1 , open Server Manager, select "Add Roles and Features";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/66/wKioL1SBSduC-369AAIX46zHhCw575.jpg "title=" 1.PNG " alt= "Wkiol1sbsduc-369aaix46zhhcw575.jpg"/>
2 , select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/66/wKioL1SBSeyByAk-AAKDQyjc808222.jpg "title=" 2.PNG " alt= "Wkiol1sbseybyak-aakdqyjc808222.jpg"/>
3 , select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/68/wKiom1SBSWjSPWMNAAIeeSYSEGo218.jpg "title=" 3.PNG " alt= "Wkiom1sbswjspwmnaaieesysego218.jpg"/>
4 , select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBSgCRo2E3AAKjA7cNtj0479.jpg "title=" 4.PNG " alt= "Wkiol1sbsgcro2e3aakja7cntj0479.jpg"/>
5 , tick " Active Directory Certificate Services ";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBShLAGIwlAAL3YWeHg9o025.jpg "title=" 5.PNG " alt= "Wkiol1sbshlagiwlaal3ywehg9o025.jpg"/>
6 , select Add Features in the Add Roles and Features wizard dialog box that pops up, and then select Next;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/68/wKiom1SBSY_CFh_yAAKE7RWdYns961.jpg "title=" 6.PNG " alt= "Wkiom1sbsy_cfh_yaake7rwdyns961.jpg"/>
7 , select "Next" ;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/66/wKioL1SBSi7xRMPxAALs1TDbaAY322.jpg "title=" 7.PNG " alt= "Wkiol1sbsi7xrmpxaals1tdbaay322.jpg"/>
8 , select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/66/wKioL1SBSjzy08WhAAJAV27jkt8657.jpg "title=" 8.PNG " alt= "Wkiol1sbsjzy08whaajav27jkt8657.jpg"/>
9 , in many cases we need to pass Web request a certificate (e.g. Exchange ), all in addition to the default "certification authority", you will also need to check the "Certification Authority Web registration ";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/68/wKiom1SBSbzQkZZsAAIvezhAhAw225.jpg "title=" 9.PNG " alt= "Wkiom1sbsbzqkzzsaaivezhahaw225.jpg"/>
Ten , select "Add Features" in the Pop-up dialog (usually I prefer to install them first .) IIS Some basic functions of the role; IIS installation method: http://yupeizhi.blog.51cto.com/3157367/1586608); then select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBSleQGxLCAAK7FLMTGYc231.jpg "title=" 10.PNG "alt=" Wkiol1sbsleqgxlcaak7flmtgyc231.jpg "/>
One , here is the introduction of the previous configuration, select "Install";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/68/wKiom1SBSd6DyC3wAAKdQUpxoxQ520.jpg "title=" 11.PNG "alt=" Wkiom1sbsd6dyc3waakdqupxoxq520.jpg "/>
A , is being installed;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/68/wKiom1SBSgHxlJ-gAAJ3XiwXLMM402.jpg "title=" 12.PNG "alt=" Wkiom1sbsghxlj-gaaj3xiwxlmm402.jpg "/>
- , when the installation is complete, select Configure the Active Directory Certificate Services ";" If you select "Close" directly;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/66/wKioL1SBSrriGFt3AAKxnxI9pR0678.jpg "title=" 13.PNG "alt=" Wkiol1sbsrrigft3aakxnxi9pr0678.jpg "/>
- , you can click on it from the small flag on the Server Manager, and then select "Configure the target server Active Directory Certificate Services ";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBStmRLAxkAAHqLRy8LEw671.jpg "title=" 14.PNG "alt=" Wkiol1sbstmrlaxkaahqlry8lew671.jpg "/>
the , here I am using the administrator login, all directly use the default permissions on it, directly select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/68/wKiom1SBSl6DaqBZAAIRg6B70so795.jpg "title=" 15.PNG "alt=" Wkiom1sbsl6daqbzaairg6b70so795.jpg "/>
- , tick "certification authority" and "Certification Authority" Web register "; then select" Next ";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/68/wKiom1SBSp7BW36FAAHpHrjWlQY096.jpg "title=" 16.PNG "alt=" Wkiom1sbsp7bw36faahphrjwlqy096.jpg "/>
- , select the Enterprise CA ", and then select" Next ";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/68/wKiom1SBStXAaWJmAAJb4Ei7obs206.jpg "title=" 17.PNG "alt=" Wkiom1sbstxaawjmaajb4ei7obs206.jpg "/>
- , this is the root domain CA , is also the root CA , then select Next;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/68/wKiom1SBSu6QwIDPAAJMnCNhV_s453.jpg "title=" 18.PNG "alt=" Wkiom1sbsu6qwidpaajmncnhv_s453.jpg "/>
+ , select Create a new private key, and then select Next;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/66/wKioL1SBS4zSkGgaAAKLzDhRORU112.jpg "title=" 19.PNG "alt=" Wkiol1sbs4zskggaaaklzdhroru112.jpg "/>
- , the default setting is OK, then select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M01/54/68/wKiom1SBSwzAu0bvAAILBtvCL_U650.jpg "title=" 20.PNG "alt=" Wkiom1sbswzau0bvaailbtvcl_u650.jpg "/>
+ , specify CA Some of the information that should be noted here is CA the common name, a more friendly name, a meaningful name, not as I do not have a sense of meaning, nor is it difficult to remember;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBS6rxRORJAAJ_al7fh9E477.jpg "title=" 21.PNG "alt=" Wkiol1sbs6rxrorjaaj_al7fh9e477.jpg "/>
A , the certificate is generally the default is 5 years, then select "Next";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/68/wKiom1SBSy6iUTDKAAHEzQxpjQo477.jpg "title=" 22.PNG "alt=" Wkiom1sbsy6iutdkaahezqxpjqo477.jpg "/>
at , select the location of the database and log files, and then select Next;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/66/wKioL1SBS9uBlE1NAAHKNb6ElPc628.jpg "title=" 23.PNG "alt=" Wkiol1sbs9uble1naahknb6elpc628.jpg "/>
- , select "Configure";
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M02/54/68/wKiom1SBS1fT1mD0AAKPiaHURnk694.jpg "title=" 24.PNG "alt=" Wkiom1sbs1ft1md0aakpiahurnk694.jpg "/>
- , after the configuration is complete, select "Close"; here we go . CA the configuration is completed;
650) this.width=650; "src=" http://s3.51cto.com/wyfs02/M00/54/68/wKiom1SBS3WwdbhbAAG5vNOcNBk993.jpg "title=" 25.PNG "alt=" Wkiom1sbs3wwdbhbaag5vnocnbk993.jpg "/>
This article is from the "Snow Orchid" blog, please be sure to keep this source http://yupeizhi.blog.51cto.com/3157367/1586621
Install Active Directory Certificate Services