PKI Spotlight Latest Release
PKI Spotlight’s Latest Release Introduces New Features To Help IT Teams Solve Their Greatest PKI Challenges It’s another exciting day at PKI Solutions as we introduce our latest updated release of PKI Spotlight, the industry’s first and only real-time PKI monitoring and alerting solution. This latest release of PKI Spotlight introduces new capabilities including a […]
Understanding Active Directory Certificate Services Containers in Active Directory
As part of joining PKI Solutions, several blog posts from my old site are re-posted here for visibility and thoroughness. Hello folks! Today I want to explain in details about Active Directory containers related to ADCS (Active Directory Certificate Services), their purposes and how they work. Intro All ADCS related containers are stored in configuration […]
PowerShell PKI Module (PSPKI) v3.5 New Year Edition
Time-Stamp Protocol client As a part of improved support of PKCS#7 messages, we added a .NET-compatible RFC 3161 Time-Stamp Protocol implementation. There are two common use cases for this protocol: Provide a current date and time for devices that don’t have built-in clocks; Certify that particular data existed at certain time point Second aspect is […]
Request extension processing in Active Directory Certification Authority
Hello S-1-1-0, Crypt32 is on air! Today I want to explain how ADCS Certification Authority processes extensions from incoming requests and certificate templates. Every X.509 V3 certificate contains certificate extensions to include extra information about certificate owner, issuer, intended usages, limitations/constraints. CA utilize multiple sources to generate extension list to be included in signed certificate, […]
Register TLS certificate with Remote Desktop Service using PowerShell
Hello everyone! This is a quick blog post that provides information on how to register TLS certificate with Remote Desktop Services (RDS). Starting with Windows Server 2008 R2 it became extremely easy to deploy RDS certificates to AD hosts from private CA using group policies and Microsoft CA. Since then RDS over TLS should be […]
Protecting Public Key Infrastructure Environments and Certificate Authorities Against Password Fatigue and Authentication Risks

Abstract Public Key Infrastructure (PKI) and Certificate Authorities (CAs) play a crucial role in digital security, ensuring the authenticity and integrity of online communications. However, PKI and CA environments are vulnerable to various authentication risks, including password fatigue, which can compromise the security of an organization’s sensitive data. This guide provides insights into these risks […]
PowerShell File Checksum Integrity Verifier (PsFCIV)
Today I’m glad to announce a PowerShell File Checksum Integrity Verifier (hereinafter PsFCIV) availability as a standalone package. Years ago a friend of mine asked to develop a PowerShell script that would replace a now-discontinued Microsoft File Checksum Integrity Verifier (FCIV) tool that is an essential utility to check integrity of large file shares. While […]
Just Released – Licensing Options for Our PKI Tools
I am pleased to announce that based on overwhelming demand, starting today we are now providing licensed and supported versions of our most popular PKI tools – PowerShell PKI Module, ASN.1 Editor, and the SSL Certificate Verifier. Available in single user or enterprise licenses and includes 12-months of support for the tool. The licensing model […]