Microsoft certificate templates not available for auto-enrollment in RSA Certificate Manager 6.8
2 years ago
Originally Published: 2011-06-29
Article Number
000045183
Applies To
RSA Product Set: RSA Certificate Manager (RCM)
RSA Product/Service Type: Auto Enrollment Proxy (AEP), Microsoft Certificate Templates
RSA Version/Condition: 6.8
Issue
Microsoft certificate templates are not available
Created a copy of a existing template that when seen by AEP, it shows up with a STATUS of unavailable.
Resolution
New certificate template must be added to AD object "CN=Red hat Certificate System Proxy" properties.  To do so, follow the steps below:
  1. On Domain Controller, start ADSI Edit. Go to Start -> Run -> type in "adsiedit.msc" and hit Enter
  2. Click on ADSI Edit node in the tree on left, click Action menu, and select Connect to...
  3. Under Connection Point, Select a well known Naming Context, select Configuration from the drop down
  4. Click Ok ADSI Edit
  5. Open the tree on the left as shown in the image below to get to the object "CN= Red hat Certificate System Proxy" object, right-click on the object and select Properties, then Edit certificateTemplates attribute to include the new certificate templateRed hat proxy object
  6. Once the changes are save on  Active Directory / Domain Controller, type in the following command on command line on the Domain Controller to push the changes: 
  7. gpupdate /force