AD CS Web Enrollment: Invalid pointer 0x80004003 (-2147467261 E_POINTER)

Emenual Luna Wolff 0 Reputation points
2023-12-29T19:03:44.7233333+00:00

I have a Windows 2019 server set up as a CA in my environment. It's tied to my DC. I have IIS installed and certificate web enrollment is in use. I can browse to my https://CA/certsrv no problem. The websites certificate is valid and trusted. I can log in with AD credentials for a test user I'm using.
When I log into certsrv as the test user, and attempt to request a new user certificate, the following issues are present:

  1. My custom "Domain Users" template is not visible. That's probably the biggest issue right now.
  2. I am unable to choose a key-bit length (such as 2048) with the default user template.
  3. I try to submit a request anyway and receive the following error:
    Your request failed. An error occurred while the server was processing your request.

Contact your administrator for further assistance.

Request Mode:newreq NN - New Request (keygen)

Disposition:(never set)

Disposition message:(none)

__Result:__Invalid pointer 0x80004003 (-2147467261 E_POINTER)

__COM Error Info:__CCertRequest::Submit: Invalid pointer 0x80004003 (-2147467261 E_POINTER)

__LastStatus:__The operation completed successfully. 0x0 (WIN32: 0)__Suggested Cause:__No suggestions.

Please advise, and thank you for being generous with your time.

Active Directory Federation Services
Active Directory Federation Services
An Active Directory technology that provides single-sign-on functionality by securely sharing digital identity and entitlement rights across security and enterprise boundaries.
1,219 questions
0 comments No comments
{count} votes