Chrome v58 - Certificate Services and SAN (Subject Alternative Name)


ever since chrome v58 getting the  net::err_cert_common_name_invalid on our ms ca issued certificates.

i've read can fix reissuing certificate after make change on certificate template - "subject name" tab checking "build ad information" , checking dns name under "include information in alternate subject name".   fix fine except fix prevents template show in web enrollment site, "supply in request" makes available in web enrollment site.

so how both work - template listed in web enrollment site have populate alternate subject name ?   of these options change in later versions of ms ca 2012 r2 or 2016 ?

current: ms ca 2008r2 

hi,

》》so how both work - template listed in web enrollment site have populate alternate subject name ?   of these options change in later versions of ms ca 2012 r2 or 2016 ?

please try select "supply in request",and manually add dns name in san when request certificate.

check link reference:

how add subject alternative name secure ldap certificate

https://support.microsoft.com/en-us/help/931351/how-to-add-a-subject-alternative-name-to-a-secure-ldap-certificate


best regards
cartman
please remember mark replies answers if help. if have feedback technet subscriber support, contact tnmff@microsoft.com



Windows Server  >  Windows Server General Forum



Comments

Popular posts from this blog

Generating Event ID 91, 44 with CA (In Event Viewer with source as Certsvc)

Group policy default policy cannot be edited because network name not found

Windows server 2012 r2 inplace upgrade failed