<?xml version="1.0" encoding="UTF-8" ?>
<rss version="2.0">
<channel>
<title><![CDATA[gOxiA=苏繁=SuFan Blog]]></title> 
<link>https://maytide.net/index.php</link> 
<description><![CDATA[gOxiA,苏繁,sufan,Microsoft MVP]]></description> 
<language>zh-cn</language> 
<copyright><![CDATA[gOxiA=苏繁=SuFan Blog]]></copyright>
<item>
<link>https://maytide.net/read.php/1464.htm</link>
<title><![CDATA[HOWTO:解决 ActiveDirectory_DomainService ID1220 故障]]></title> 
<author>gOxiA &lt;sufan_cn@msn.com&gt;</author>
<category><![CDATA[Windows Server]]></category>
<pubDate>Wed, 08 Dec 2010 06:28:23 +0000</pubDate> 
<guid>https://maytide.net/read.php/1464.htm</guid> 
<description>
<![CDATA[ 
	<p><a href="http://goxia.maytide.net/ftpupfiles/WindowsServer2008HOWTOWindowsServer2008P_10478/logomsws08v.png"><img src="http://goxia.maytide.net/ftpupfiles/WindowsServer2008HOWTOWindowsServer2008P_10478/logomsws08v_thumb.png" border="0" alt="logo-ms-ws08-v" title="logo-ms-ws08-v" width="224" height="75" /></a>HOWTO:解决 ActiveDirectory_DomainService ID1220 故障</p><p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Windows Server 2008 ActiveDirectory 环境下可能会出现 ActiveDirectory_DomainService ID1220 故障问题，内容大致为&ldquo;由于服务器无法获取证书，通过安全套接字层（SSL）的 LDAP 此时无法使用。&rdquo;如下图所示：</p><p><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/ActiveDirectory_DomainService_1220.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/ActiveDirectory_DomainService_1220_thumb.png" border="0" alt="ActiveDirectory_DomainService_1220" title="ActiveDirectory_DomainService_1220" width="604" height="454" /></a></p><p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 在 <a href="http://technet.microsoft.com/" target="_blank">TechNet</a> Library 中提供了解决方案，只需要将企业根证书导入到本地服务账号中 Active Directory Domain Services 的 NTDS＼个人 下即可！为此，运行 MMC 控制台并添加 证书 单元，选择服务账户，之后选择本地计算机，最后选择 Active Directory Domain Services。</p><p><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1_thumb.png" border="0" alt="Cert_MMC_1" title="Cert_MMC_1" width="604" height="454" /></a></p><p><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-1.png"><img style="background-image: none; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-1_thumb.png" border="0" alt="Cert_MMC_1-1" title="Cert_MMC_1-1" width="525" height="379" /></a><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-2.png"><img style="background-image: none; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-2_thumb.png" border="0" alt="Cert_MMC_1-2" title="Cert_MMC_1-2" width="526" height="377" /></a><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-3.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_1-3_thumb.png" border="0" alt="Cert_MMC_1-3" title="Cert_MMC_1-3" width="525" height="377" /></a></p><p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 选中 NTDS＼个人，鼠标右键单击选择 所有任务 下的 导入，跟随向导选择已经导出并存储在本地的企业根证书。</p><p><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_2.png"><img style="background-image: none; margin: 0px; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_2_thumb.png" border="0" alt="Cert_MMC_2" title="Cert_MMC_2" width="604" height="454" /></a><a href="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_3.png"><img style="background-image: none; padding-left: 0px; padding-right: 0px; display: inline; padding-top: 0px; border: 0px" src="http://goxia.maytide.net/ftpupfiles/9bb3f88fb89f_C7B0/Cert_MMC_3_thumb.png" border="0" alt="Cert_MMC_3" title="Cert_MMC_3" width="604" height="454" /></a></p><p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 完成导入后重新启动服务器，故障解决！参考文档：<a href="http://technet.microsoft.com/en-us/library/dd941846(WS.10).aspx" target="_blank">Event ID 1220 &ndash; LDAP over SSL</a></p><br/>Tags - <a href="https://maytide.net/go.php/tags/microsoft/" rel="tag">microsoft</a> , <a href="https://maytide.net/go.php/tags/windows/" rel="tag">windows</a> , <a href="https://maytide.net/go.php/tags/server/" rel="tag">server</a> , <a href="https://maytide.net/go.php/tags/2008/" rel="tag">2008</a> , <a href="https://maytide.net/go.php/tags/activedirectory/" rel="tag">activedirectory</a>
]]>
</description>
</item>
</channel>
</rss>