Certificate Authority
Microsoft ADCS
Before you start
5 min
verify your environment meets these requirements supported hardware {{ch}} , 7 0 2 x or later supported operating systems windows 2012 r2 (6 3 9600) or later required access an account on the {{ch}} with administrator permissions to deploy new services local administrator/root access on the windows server where you will install microsoft adcs network and firewall allow outbound tcp port 2001 (default host api port) from the microsoft adcs server to the {{ch}} , specified by fqdn (for example, cryptohub example com ) or cidr (for example, 10 0 0 0/24 ) tls inspection or ssl proxies can break mutual tls handshakes exempt the {{ch}} fqdn(s) from inspection configure the {{ch}} with a fqdn so the exemption applies