Need a way to remove a certificate from domain computers

M

Mario Lavigne

Guest
Hi,

We've installed a local Entreprise Root Certificate Authority in our Windows

2000 Domain last year in preparation for the implementation of the 802.1x

protocol.

I had to reinstall the DC hosting the Certificate Authority last weekend and

I had no backup of the CA, unfortunately.

Now, 802.1x isn't working properly on our computers because they have a

certificate from the old CA which needs to be deleted before 802.1x can work

again.

Is there any way I can script the certificate removal so I don't have to

remove it manually from each computer? I've seen CAPICOM for vbs and while

it's working very nicely, I would have to install the package on every

computer in my organization before even thinking of removing the

certificate. So is there any other solutions?

Also, I know my situation is less than ideal, there should have been a

recovery scenario for the CA. Could any one of you suggest me a good way of

getting a backup of the CA and how to restore it?

Thanks a lot in advance.

Mario Lavigne

 
Top Bottom