We have an AD domain with only Win2k domain controllers (Native Mode). I'm looking to implement PKI for our staff websites (OWA and an Intranet) and for WPA, but I'm also thinking about upgrading the domain to contain at least one Win2k3 DC. I could start PKI immediately, but the domain upgrade may take more time.
If I install an Enterprise Certificate Authority before the domain upgrade, will it work properly when the domain is upgraded (even if the CA is still on a Win2k server)? Or, would I be better off waiting until after getting a Win2k3 DC or two first, and then installing the Enterprise CA on one of them?
If I install an Enterprise Certificate Authority before the domain upgrade, will it work properly when the domain is upgraded (even if the CA is still on a Win2k server)? Or, would I be better off waiting until after getting a Win2k3 DC or two first, and then installing the Enterprise CA on one of them?