Summary

In this chapter, we talked about the certificate authority (CA). We explained why you need to use certificates and how to configure them. We discussed how a computer or user gets a certificate through a GPO, auto enrollment, or web enrollment. We then reviewed the steps and reasons for revoking a certificate.

We went on to discuss the Active Directory Domain Service (AD DS) and the advantages of using a read-only domain controller (RODC). After that, we talked about the Active Directory Federation Services (AD FS), which provides Internet-based clients with a secure identity access solution that works on both Windows and non-Windows operating systems.

We continued with Active Directory Lightweight Directory Services (AD LDS), a Lightweight ...

Get MCTS Windows Server® 2008 R2 Complete: Study Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.