Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations biv343 on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Can my Enterprise root CA on the same server that my RRAS is on?

Status
Not open for further replies.

Robbman2000

Technical User
Jun 11, 2003
18
US
I'm setting up a new RRAS server for VPN and intend to use L2TP/IPSec so I need a certificate authority. If the CA is on the same server as the RRAS will it asign itself a certificate? Also would there be any security problems with this configuration?
 
You really shouldn't put your root CA on a publicly available server. The root CA is the one you want to lock up and put in a closet, only taking it out on special occasions. Protect that one.

Functionally it is possible to do what you want, but it defeats the purpose of having your own root CA if it isn't safe.
 
Yes, after doing some reading I finally realized when they said 'offline' enterprise root CA they REALLY meant offline. I think I have the situation in order, thanks for your reply NTrOP
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top