You can change the CRL publication
interval and enable as well as set the publication interval for the delta CRLs from the
CRL Publishing Parameters tab, as shown in Figure 12-25. The next update time is also
displayed so you know when the next publication is scheduled to take place. You can also
view the CRL or the delta CRL from the View CRLs tab shown in Figure 12-26.
Figure 12-24. Installing the certificate
430 Microsoft Windows Server 2008 Administration
Figure 12-26. View CRLs tab
Figure 12-25. Revoked Certificates Properties screen
431 Chapter 12: Enterprise Public Key Infrastructure
CHAPTER SUMMARY
This chapter covered the installation, configuration, and management of Active Directory
Certification Services, which is the physical implementation of PKI for Windows Server
2008. Certificates can be used for both encryption and identity management. When
implemented correctly, certificates can greatly enhance security by adding another
layer of protection for securing your data. You can use certificates with IPSec to encrypt
communication between two systems. It can be used to encrypt data on an EFS
formatted hard drive and even to validate the authenticity of a server??™s identity that
is required for SSL traffic. For identity management, certificates can be used to sign
e-mail messages digitally or to authenticate to the domain using certificates loaded
onto smart cards.
Pages:
435
436
437
438
439
440
441
442
443
444
445
446
447
448
449
450
451
452
453
454
455
456
457
458
459