Share personal certificate of LDAPS server to Clients

Costas Christodoulou 21 Reputation points
2020-04-16T10:01:33.467+00:00

We have enabled LDAPS on the DCs and that means that each of them has it own personal certificate.
Some application owners (java untill now) request from us that pesonal certificate of the domain controller in order to embended it to their application.
I would like to ask if to give the personal certificate of a domain controller to a member server is a valid practice and if that could be mean a security issue.

Thank you

Not Monitored
Not Monitored
Tag not monitored by Microsoft.
38,520 questions
0 comments No comments
{count} votes

Accepted answer
  1. Leon Laude 85,776 Reputation points
    2020-04-16T10:50:02.227+00:00

    Hi,

    Q&A currently supports the products listed in right-hand pane (more to be added later on)

    You can reach the experts in the dedicated Directory Services forum over here:
    https://social.technet.microsoft.com/Forums/en-US/home?forum=winserverDS

    (please don't forget to mark helpful replies as answer)

    Best regards,
    Leon

    0 comments No comments

0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.