PrepAway - Latest Free Exam Questions & Answers

You need to ensure that the external users can request certificates by using the new template

You have a server named Server1 that has the following Active Directory Certificate
Services (AD CS) role services installed:
Enterprise root certification authority (CA)

Certificate Enrollment Web Service
Certificate Enrollment Policy Web Service
You create a new certificate template.
External users report that the new template is unavailable when they request a new
certificate.
You verify that all other templates are available to the external users.
You need to ensure that the external users can request certificates by using the new
template.
What should you do on Server1?

PrepAway - Latest Free Exam Questions & Answers

A.
Run iisreset.exe /restart.

B.
Run gpupdate.exe /force.

C.
Run certutil.exe dspublish.

D.
Restart the Active Directory Certificate Services service.

Explanation:
http://social.technet.microsoft.com/wiki/contents/articles/7734.certificate-enrollment-webservices-in-activedirectory-certificate-services.aspx
Certificate Enrollment Web Services in Active Directory Certificate Services
Troubleshooting
Managing Certificate Enrollment Policy Web Service Polling for Certificate Templates
Certificate Templates are stored in AD DS, and the Certificate Enrollment Policy Web
Service polls the AD DS periodically for template changes. Changes made to templates are
not reflected in real time on the Certificate Enrollment Policy Web Service. When
administrators duplicate or modify templates, there can be a lag between the time at which
the change is made and when the new templates are available. By default, the Certificate
Enrollment Policy Web Service polls the directory every 30 minutes for changes. The
Certificate Enrollment Policy Web Service can be manually forced to refresh its template
cache by recycling IIS using the command iisreset.


Leave a Reply