https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.ad-ca-2019-ee87ef63-094f-4527-8605-a44fbfde490a/89e93efb-69b9-4b02-83a4-25310339a306_pki2025-azure.png
Active Directory Certificate Services 2025 PKI
על-ידי Cloud Infrastructure Services
Just a moment, logging you in...
Deploy Active Directory Certificate Services PKI 2025 to your Azure tenant IaaS
Active Directory Certificate Services PKI Solution on Windows Server 2025
Deploy an Active Directory Certificate Authority. Build a new public key infrastructure (PKI) or setup a Subordinate CA to an already established PKI hierarchy. Provide public key cryptography, digital certificates, and digital signature capabilities for your organization.
- Deploy certificates to your users, devices, or services on Active Directory via group policy.
- Use the Network Device Enrollment Service (NDES) to deploy certificates to network devices such as routers and switches.
- Use the Online Certificate Status Protocol (OCSP) to check the revocation status of certificates in real-time.
- Use the existing endpoint identity information that exists in AD to register for certificates (to avoid re-registering).
- Configure AD Group Policies to dictate which users and machines are allowed which types of certificates.
- Automate Certificate Provisioning and Lifecycle Management.
- You can use AD CS to enhance security by binding the identity of a person, device, or service to a corresponding private key. AD CS gives you a cost-effective, efficient, and secure way to manage the distribution and use of certificates.
- Applications supported by AD CS include Secure/Multipurpose Internet Mail Extensions (S/MIME), secure wireless networks, virtual private network (VPN), Internet Protocol security (IPsec), Encrypting File System (EFS), smart card logon, Secure Socket Layer/Transport Layer Security (SSL/TLS), secure web servers, and digital signatures.
AD Certificate Services (PKI) features:
- Key Attestation now supports the use of Smart Card Key Storage Providers
- Enhanced Key Attestation with TPM 2.0 for hardware-based key protection
- Support for ECDSA and SHA-384/SHA-512 cryptographic algorithms
- Network Device Enrollment Service (NDES)
- Online Certificate Status Protocol (OCSP)
- HTTPS Certificate Enrollment (CEP/CES) for secure enrollment over HTTPS
- Hardware Security Module (HSM) Integration to protect CA private keys
- Use the existing endpoint identity information that exists in AD to register for certificates (to avoid re-registering)
- Configure AD Group Policies to dictate which users and machines are allowed which types of certificates
- Automate Certificate Provisioning and Lifecycle Management
- Certificate Templates v4 with enhanced security defaults
- Full PowerShell cmdlet support for AD CS administration
- Enhanced Audit and Compliance Logging for certificate lifecycle
- Cross-Forest Certificate Enrollment for trusted forests
- Azure Arc and Entra ID Integration for hybrid cloud scenarios
PKI Support
Documentation & support can be found on - PKI in Azure
במבט מהיר
https://catalogartifact.azureedge.net/publicartifacts/cloud-infrastructure-services.ad-ca-2019-ee87ef63-094f-4527-8605-a44fbfde490a/77109c8d-1ee9-41f1-a085-e5d4f9f7c349_D6191_publishers_cloud:2Dinfrastructure:2Dservices/ad:2Dca:2D2019/3e43a90e-15b8-49fb-82c1-0027185f3018.png
אפליקציות נוספות מ- Cloud Infrastructure Services
Ubuntu 22.04Cloud Infrastructure ServicesUbuntu 22.04 LTS "Jammy Jellyfish" OS optimised for Azure server workloads by Cloud Infrastructure Services.
+1
Applicable to:
Virtual Machines
NaN out of 5
Ubuntu 24.04Cloud Infrastructure ServicesUbuntu 24.04 LTS "Noble Numbat" OS optimised for Azure server workloads by Cloud Infrastructure Services.
+1
Applicable to:
Virtual Machines
NaN out of 5
Datacenter for Windows Server 2019Cloud Infrastructure ServicesDatacenter for Windows Server 2019 for Azure Cloud Server Deployments and Hybrid Server Environments.
+1
Applicable to:
Virtual Machines
NaN out of 5
Ubuntu 24.04Cloud Infrastructure ServicesUbuntu 24.04 LTS "Noble Numbat" OS optimised for Azure server workloads by Cloud Infrastructure Services.
+1
Applicable to:
Virtual Machines
NaN out of 5
PostgreSQL ServerCloud Infrastructure ServicesPostgreSQL Server and pgAdmin on Ubuntu 24.04. Open-source relational database system
+1
Applicable to:
Virtual Machines
NaN out of 5