System TipThis article applies to a different operating system than the one you are using. Article content that may not be relevant to you is disabled.
Take a backup of Certificate Authority to a new location and uninstall it.
Restart the server.
Install Certificate Authority as per the steps below:
On the Destination Server, click Start, point to Administrative Tools, and then click Server Manager.
In the Roles Summary section, click Add Roles.
On the Before You Begin page, click Next.
On the Server Roles page, select Active Directory Certificate Services, and then click Next.
On the Introduction to Active Directory Certificate Services page, click Next.
On the Select Role Services page, select Certification Authority and Certification Authority Web Enrollment, and then click Next.
On the Specify Setup Type page, select Standalone, and then click Next.
On the Specify CA Type page, select Root CA, and then click Next.
On the Set Up Private Key page, select Use existing private key, choose the Select a certificate and use its associated private key option, and then click Next.
On the Select Existing Certificate page, choose the <ServerName>-CA certificate (where <ServerName> is the name of your Destination Server), and then click Next.
On the Configure Certificate Database page, accept the default locations, or click Browse if you want to save the database or log file to a different location. Then click Next.
Confirm your selections, and then click Install.
When the wizard is finished, click Close, and then restart the server.
Restore Certificate Authority as per the steps below:
Click Start, point to Administrative Tools, and then click Certification Authority.
In the Certification Authority console tree, right-click <ServerName>-CA (where <ServerName> is the name of your Destination Server), click All Tasks, and then click Restore CA.
If you are asked to stop Active Directory Certificate Services, click OK.
The Certification Authority Restore Wizard appears. Click Next on the Welcome page of the wizard.
On the Items to Restore page, select Private key and CA certificate and Certificate database and certificate database log, type or browse to the location where CA was backed up before running dcpromo (As per whitepaper it asks to backup to C:\CA_Backup), and then click Next.
Note For an incremental restore, select the full backup file and complete the wizard. Then re-run the wizard and select subsequent incremental backup files.
On the Provide Password page, type a password for gaining access to the private key and the CA certificate file, and then click Next.
When the wizard completes, click Finish.
You are asked if you want to start Active Directory Certificate Services. If you have additional incremental backups to restore, click No to re-run the wizard and continue restoring. If restoration is complete, click Yes to start Active Directory Certificate Services.
Note This is a "FAST PUBLISH" article created directly from within the Microsoft support organization. The information contained herein is provided as-is in response to emerging issues. As a result of the speed in making it available, the materials may include typographical errors and may be revised at any time without notice. See Terms of Use
(http://go.microsoft.com/fwlink/?LinkId=151500)
for other considerations.