Machine certificates
Here you will find details on class E machine certificates (Windows PKI).
A manual enrolment procedure is provided for obtaining system certificates for machines outside the INTRA and FDFA forests, UNIX servers or workgroup servers. However, these machines must not have public trust status. These certificates are issued exclusively by the CA “SwissGovernment-E-Intra01”.
For certificates with (EKU): client authentication, server authentication and client/server authentication, 3 certificate templates are provided for each authentication:
- auto: auto-enrolment of certificates
- ManAPP: manual enrolment of certificates with manager approval
- noManAPP: manual enrolment of certificates without manager approval
These certificates allow a domain controller to authenticate itself to other computers and users. They are primarily used for smartcard logon in the Active Directory domain.
You can find this information under Class C certificates.
You can find this information under Class C certificates.
You can find this information under Class C certificates.
You can find this information under Class C certificates.
The keys and the certificates issued under this certificate policy allow a TLS 1.0 security level, which thus permits the verification of the identity of the server with the remote desktop session host and the encryption of the communication between the remote desktop session host and the client.
The keys and certificates issued under this certificate policy enable Windows and Office products to be activated in specific environments using token-based activation (TBA).
The keys and certificates issued under this certificate policy allow the backup data of domain controllers to be transmitted over encrypted network connections.