Schedule Production Rollout
Updated: March 28, 2003
Applies To: Windows Server 2003, Windows Server 2003 R2, Windows Server 2003 with SP1, Windows Server 2003 with SP2
For large enterprise deployments, schedule the public key production rollout in stages. You can roll out different portions of the infrastructure at different times as necessary to support your security goals and business needs.
For example, you might begin by deploying EFS and IPSec because you do not have to establish a large CA hierarchy to take advantage of the security benefits of these features. You might place the next highest priority on secure mail and smart card authentication. You can schedule the rollout of the secure mail infrastructure before rolling out the smart card infrastructure, or you can choose to schedule the deployment of secure mail to one group or site and simultaneously roll out the smart card infrastructure to another group or site.
In many organizations, responsibility for the PKI deployment is transferred from a high-level design team to a more tactically focused implementation team at this time. If this is the case in your organization, be sure to provide the implementation team with all the documentation, including worksheets that you have created up to this point.