Creating a certificate template
To configure a template with auto-enrollment:
- Open the MMC Certificate Template snap-in.
Another way to open the Certificate Template console is to open the Certification Authority console, right-click Certificate Templates, and select Manage.
-
Select a template, then right-click and select Duplicate Template to create a new template that you can modify.
For example, select the Workstation Authentication template.
-
On the Properties page for the new template, do the following:
-
Select the General tab and enter a name for the template.
-
Select the Security tab and select Domain Computers. Then select Read and Autoenroll permissions.
-
Select the Subject Name tab. For Subject name format, select Fully distinguished name.
-
Select the Extensions tab. Then select Application Policies.
-
Click Edit. Client Authentication should already be shown.
-
Click Add, then scroll and select Server Authentication.
-
Click OK.
-
-
Click OK to save the new template.