From the course: Windows Server 2016: Active Directory Certificate Services

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Archiving private keys

Archiving private keys - Windows Server Tutorial

From the course: Windows Server 2016: Active Directory Certificate Services

Start my 1-month free trial

Archiving private keys

- [Instructor] Sometimes certificates and private keys can be corrupted or lost, and that can be a real problem. In a Windows Server 2012 R2 course on identity and access solutions, I introduced a section very similar to this by pointing out that what we're about to do is both useful and risky, and both points still apply in Server 2016. So let me open here by discussing the risk. A deleted certificate can be recovered easily enough. From the Certification Authority, I can select Issued Certificates, double click on a certificate, and from the Details tab, I can copy that certificate out to a file. But getting the private key back is another issue altogether. We've been issuing certificates to provide security. These certificates might be used to prove our identity or to encrypt network transmissions or to encrypt locally stored files. If our solution to someone losing their key is to have a spare key, that means a copy of the key is out there somewhere, and if active directory and…

Contents