CERTIFICAT AD CS
Importer le certificat ROOT de l'active DIRECTORY (DC01 => C:\comptaplus\CA-ROOT.cer
certutil -encode CA-ROOT-Comptaplus.cer ca.cer
Permet de coder le certificat en Base-64 et donc il sera lisible
Services: Unbound DNS: Override
Configuration LDAPS
-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----
Crée une demande C.S.R (Certificat Signed Request)
Copier le CSR en bas de la demande, se rendre sur http://dc01.comptaplus.loc/certsrv/
générer comme un serveur web un cer en base 64 et l'ouvrir avec le bloc note et le coller dans la partie DATA du certificat serveur