Event Id | 106 |
Source | Microsoft-Windows-CertificationAuthority |
Description | Active Directory Certificate Services cannot add certificate %1 to %2. %3. %4 |
Event Information | According to Microsoft : Cause : This event is logged when Active Directory Certificate Services cannot add certificates. Resolution : Enable AD CS to add a CA certificate to Active Directory Domain Services To enable Active Directory Certificate Services (AD CS) to add the certification authority (CA) certificate identified in the event log message to Active Directory Domain Services (AD DS): 1.Confirm that the CA has permissions to essential AD DS containers and objects. 2.Determine if the CA certificate exists in the AIA container. 3.If it does not exist, publish the CA certificate to the AIA container manually.Note To perform this procedure, you must have membership in Domain Admins, or you must have been delegated the appropriate authority.Confirm permissions on essential AD DS containers and objectsTo confirm that the CA has needed permissions on AD DS containers and objects within these containers: 1.On a domain controller, clickStart, point to Administrative Tools, and click Active Directory Sites and Services. 2.ClickActive Directory Sites and Services [domainname]where [domainname] is the name of your domain. 3.On theView menu, clickShow Services Node. 4.Double-clickServices, double-clickPublic Key Services, and right-click each container listed below, or the objects listed within the container, and clickProperties. 5.On the Security tab, confirm the required permissions. |
Reference Links | Event ID 106 from Source CertificationAuthority |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.