SHA1 CA
We have a SHA1 Infrastructure and we are wondering if converting the SHA1 CA to a SHA2 CA is doable or can a SHA1 CA issue SHA2 certificates. The OS is 2008r2, we have one offline root and one issuing CA. Thanks, Lori
July 7th, 2011 7:16pm

you can configure a CA server to sign all requests by using SHA2 algorithms: certutil -setreg ca\csp\CNGHashAlgorithm SHA256 net stop certsvc && net start certsvc However this will cause that *all* certificate requests will be signed with specified algorithm.My weblog: http://en-us.sysadmins.lv PowerShell PKI Module: http://pspki.codeplex.com
Free Windows Admin Tool Kit Click here and download it now
July 7th, 2011 7:40pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics