Certificate Enrollment Policy Servers
Applies To: Windows Server 2008 R2
Certificate enrollment policy provides the locations of certification authorities (CAs) and the types of certificates that can be requested. Organizations that are using Active Directory Domain Services (AD DS) can use Group Policy to provide certificate enrollment policy to domain members by using the Group Policy Management Console to configure the certificate enrollment policy settings. The Certificates snap-in can be used to configure certificate enrollment policy settings for individual client computers unless the Group Policy setting is configured to disable user-configured enrollment policy.
Use the following procedures to configure certificate enrollment policy settings:
Manage Certificate Enrollment Policy by Using Group Policy
Manage Certificate Enrollment Policy by Using the Certificates Snap-in