Administration

Table Of Contents
Table 510. Enrollment Certificate Status
Status Text Description
A valid enrollment certificate for this
domain's <domain name> forest is not
installed on the <FQDN> enrollment
server, or it may have expired
No enrollment certificate for this domain has been installed, or the certificate is invalid or
has expired. The enrollment certificate must be issued by an enterprise CA that is trusted
by the forest this domain is a member of. Verify that you have completed the steps in the
View Administration document, which describes how to install the enrollment certificate on
the enrollment server. You can also open the MMC, certificate management snap-in,
opening the local computer store. Open the Personal certificate container and verify that
the certificate is installed, and that it is valid. You can also open the enrollment server log
file. The enrollment server will log additional information about the state of any certificate it
located.
Table 511. Certificate Template Status
Status Text Description
The template <name> does not exist
on the <FQDN> enrollment server
domain.
Check that you specified the correct template name.
Certificates generated by this template
can NOT be used to log on to windows.
This template does not have the smart card usage enabled and data signing enabled.
Check that you specified the correct template name. Verify that you have .completed the
steps described in Create Certificate Templates Used with True SSO.
The template <name> is smartcard
logon enabled, but cannot be used.
This template is enabled for smart card logon, but the template cannot be used with True
SSO. Check that you specified the correct template name, verify that you have gone
through the steps described in Create Certificate Templates Used with True SSO. You
can also check the enrollment server log file, since it will log what setting in the template
is preventing it from being used for True SSO.
Table 512. Certificate Server Configuration Status
Status Text Description
The certificate server <CN of CA>
does not exist in the domain.
Verify that you specified the correct name for the CA. You must specify the Common
Name (CN).
The certificate is not in the NTAuth
(Enterprise) store.
This CA is not an enterprise CA or its CA certificate has not been added to the NTAUTH
store. If this CA is not a member of the forest, you must manually add the CA certificate to
the NTAUTH store of this forest.
View Administration
VMware, Inc. 112