problem in requesting certificate from enterprice CA
I have an enterprice CA and I created a new certificate template for SCOM authentication, and when I submit a certificate from web enrollment I got this error massege: Certificate Request Denied Your certificate request was denied. Your Request Id is 63. The disposition message is "Denied by Policy Module 0x80094800, The request was for a certificate template that is not supported by the Active Directory Certificate Services policy: SCOM Template. ". Contact your administrator for further information. I checked the authentication and make it: everyone full control. when I request a certificate from the same CA with another template it works well without any errors !! please feed me back with any suggestionsHossam Wael Elmosallamy IT Support Engineer ECC Solutions MCSE - CCNA hossam.wael@eccsolutions.net Mobile: +2(014)-9464671 Work: +202-3828-4576 www.eccsolutions.net "Experience Reliability"
September 21st, 2011 8:06pm

You probably need to publish/add the new template to your CA http://technet.microsoft.com/en-us/library/cc736358(WS.10).aspx /Hasain
Free Windows Admin Tool Kit Click here and download it now
September 22nd, 2011 1:30am

No Hasain ....I already published the new template to my CA Hossam Wael Elmosallamy IT Support Engineer ECC Solutions MCSE - CCNA hossam.wael@eccsolutions.net Mobile: +2(014)-9464671 Work: +202-3828-4576 www.eccsolutions.net "Experience Reliability"
September 23rd, 2011 12:51pm

HI Hossam the error Denied by Policy Module 0x80094800, look like to come from your application policy. in your new template do you put both oid for client and server authentication has extension in the application policy ? Stef71
Free Windows Admin Tool Kit Click here and download it now
September 23rd, 2011 1:57pm

No Hasain ....I already published the new template to my CA The error 0x80094800 indicates that the template is not supported by that CA and either means that the CA does not know about the template = not published or it can not read the template. The CA server needs to have read permissions on the template and it has that by default with the "Authenticated Users" permission. Another possible reason is if there was a rename of the template without republishing the template with its new name. /Hasain
September 23rd, 2011 2:39pm

Stef71 ......I already added the two extensions: server authentication and client authentication to application policies in the templateHossam Wael Elmosallamy IT Support Engineer ECC Solutions MCSE - CCNA hossam.wael@eccsolutions.net Mobile: +2(014)-9464671 Work: +202-3828-4576 www.eccsolutions.net "Experience Reliability"
Free Windows Admin Tool Kit Click here and download it now
September 25th, 2011 5:54am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics