Getting and renewing certificates from a Windows CA is a process that needs to be optimized as it needs too much manual intervention:
Generating the request, copy to management station, request cert, export, sometimes convert to other formats (f.i. pem) via openssh, copy back to linux machine. Then keep an eye on expiry dates and do it all again prior to cert expiration.
There should be an easy scriptable way to request and get the certificates on the linux machine as well as autorenewal.12 votes
- Don't see your idea?