Overview of Public Key Infrastructure
- Introduction to PKI
- Introduction to Cryptography
- Certificates and Certification Authorities
- Active Directory Certificate Services in Windows Server
Creating a Certification Authority Hierarchy
- CA Hierarchy Designs
- Installing an Offline CA
- Planning CRL and AIA Publication
- Implementing Subordinate CAs
- LAB: Creating a Certification Authority Hierarchy
Managing a Public Key Infrastructure
- Managing Certificates
- Managing Windows Server Certification Authorities
- Planning for Disaster Recovery
- LAB: Managing a Public Key Infrastructure
Certificate Templates
- Designing and Creating Certificate Templates
- Publishing a Certificate Template
- Managing Changes in a Template
- LAB: Certificate Templates
Certificate Enrollment
- Enrolling Certificates Manually: MMC snap-in, Web site, PowerShell
- Certificate AutoEnrollment using Group Policy
- LAB: Certificate Enrollment
Key Archival and Recovery
- Key Archival and Recovery Overview
- Key Recovery Agent
- Implementing Key Archival and Recovery
- LAB: Key Archival and Recovery
PKI and Applications
- Securing Web Traffic with SSL
- Configuring Email Security
- Encrypted File System
- Digital Signing of Scripts or Applications
- LAB: PKI and Applications
PKI Trust Between Organizations
- Advanced PKI Hierarchies
- Qualified Subordination Concepts
- Implementing a Bridge CA
This course provides students with the knowledge and skills to design, deploy, and manage a public key infrastructure (PKI) to support applications that require distributed security.
Students get hands-on experience implementing solutions to secure PKI-enabled applications and services, such as SSL, file encryption, script signing.
The Active Directory Certificate Services role in Windows Server is used to deploy a complete PKI infrastructure in the organization.
- IT system engineers who are responsible for designing and implementing security solutions.
- Participants should have experience with Active Directory and Windows Server base services.