I want to secure my Active Directory 2012R2 environment with TLS.
Can I use a wildcard commercial SSL certificate and can the secure version of AD (port 636) coexist with the default one (port 389)?
I want to secure my Active Directory 2012R2 environment with TLS.
Can I use a wildcard commercial SSL certificate and can the secure version of AD (port 636) coexist with the default one (port 389)?
I am considering securing my work environment with certificates and thus have a couple of questions.
My Active Directory domain is domain.com. If I buy a commercial wildcard SSL certificate from i.e. COMODO is it possible to create S/MIME user certificate (after installing CA on the domain controller: dc.domain.com)?
The certification path would be: COMODO CA -> Intermediate CA -> *.domain.com -> [email protected]
Is it doable or should I buy an individual certificate for each user from COMODO? If so would the certificate be trusted outside my organisation?
The second question is about S/MIME certificates deployment. Is there a GPO for distributing user certificates, attaching it to the email account and publishing GAL?
Thanks for any suggestions.