Is there a way to enforce passphrase to certificates requested by user with RCM ?
Originally Published: 2007-05-09
Article Number
Applies To
Microsoft Windows 2003 Server SP1
Microsoft Internet Explorer
Issue
Resolution
Currently the only way to force users to selected a passphrase is through the registry.
Here are steps:
***
Go to start\settings\control panel\administrative tools\local security policy\ security options
Select in "system cryptography" user must enter a password each time they use key
***
With the enrollment page, we can have the security option come up for the user, but the default option presented is "Medium" which is no passphrase. They would need to select "High".
See solution How to set default for KCA enrollment to protect private key for more details
Notes
Related Articles
Is there a way to list all issued certificates in RSA Certificate Manager? 20Number of Views Is there a way to auto-populate the subjectAltNames extension with user's email address? 12Number of Views Is there a way to import Review Results from one environment to another in RSA Identity Governance & Lifecycle? 10Number of Views Is there a way to disable logging for the ACE/Server Administration API to the system logs 3Number of Views Is there a way to remove a patch or hotfix from RSA Identity Governance & Lifecycle? 80Number of Views
Trending Articles
Troubleshooting RSA SecurID Access Identity Router to RSA Authentication Manager test connection failures RSA SecurID Software Token 5.0.2 Downloads for Microsoft Windows RSA Authentication Manager 8.9 Release Notes (January 2026) Quick Setup Guide - Passwordless Authentication in Windows MFA Agent for Active Directory RSA Authentication Manager 8.8 Setup and Configuration Guide
Don't see what you're looking for?