Installed the Quest One Certificate Auto enrollment (qcert-1.0.0.649). But still not getting the certificate.
This is the error I am getting while trying to pulse Certificate Autoenrollment for the machine :
# /opt/quest/bin/qcert pulse
No certificate enrollment policy configured. Also I tried manually applying group policy.
#/opt/quest/bin/qcert pulse
policy module denied
RESOLUTION 1:
1 - Install Active Directory Certificate Services on a Windows server or servers (version 2008 R2 or above)
Specifically the Certificate Enrollment Policy Web Service and Certificate Enrollment Web Service roles
2 - Choose to secure the enrollment web services with Kerberos
3 - Ensure the certificate authority a domain member
The machine has to be a domain member if it is hosting the enrollment web services, because they have to be secured with Kerberos. If this is still not working please see the attached document for troubleshooting steps.
Subject line requirements for the certificate
1 - On the Subject Name Tab, select Build from Active Directory information and also ensure DNS name is checked
RESOLUTION 3:
Client was missing a reverse entry in DNS.
© 2025 One Identity LLC. ALL RIGHTS RESERVED. Terms of Use Privacy Cookie Preference Center