DonatShell
Server IP : 180.180.241.3  /  Your IP : 216.73.216.252
Web Server : Microsoft-IIS/7.5
System : Windows NT NETWORK-NHRC 6.1 build 7601 (Windows Server 2008 R2 Standard Edition Service Pack 1) i586
User : IUSR ( 0)
PHP Version : 5.3.28
Disable Function : NONE
MySQL : ON  |  cURL : ON  |  WGET : OFF  |  Perl : OFF  |  Python : OFF  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /Windows/Help/Windows/en-US/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ HOME SHELL ]     

Current File : /Windows/Help/Windows/en-US/pkiview.h1s
MZ@PEL!@0@.rsrc@@.its @@0	HX||4VS_VERSION_INFOStringFileInfo040904b0b!FileVersion1.00.00                         l"FileDescriptionCompiled Microsoft Help 2.0 TitleBFileStampB938AF2201CA041F4JCompilerVersion2.5.71210.08579VCompileDate2009-07-14T01:09:23      >TopicCount25000000000000ALegalCopyright 2005 Microsoft Corporation. All rights reserved.CCCCCCCCCCCCCDVarFileInfo$Translation	ti"8bITOLITLS(X쌡^
V`   x 4CAOLPHHC ITSF #;	-Y쌡^
VY쌡^
VIFCMAOLL4IFCM AOLL//$FXFtiAttribute//$FXFtiAttribute/BTREE1/$FXFtiAttribute/DATA/$FXFtiAttribute/PROPERTYIN/$FXFtiMain//$FXFtiMain/BTREEK/$FXFtiMain/DATA/$FXFtiMain/PROPERTYcN/$Index/$ATTRNAME7\/$Index/$PROPBAG5/$Index/$STRINGScz/$Index/$SYSTEMu@
/$Index/$TOC//$Index/$TOC/$PKIView@/$Index/$TOPICATTR /$Index/$TOPICSU /$Index/$URLSTR]0/$Index/$URLTBL
H/$Index/$VTAIDXP/$Index/AssetId//$Index/AssetId/$LEAVESc	/$OBJINST@/assets/0/assets/1b611375-0845-400c-8e35-3e4c52ef8b52.xmltv0/assets/31a9b9b7-a3d2-42f6-8f63-8b9e639755de.xmlj@0/assets/33b841f7-6e71-4185-b76e-857658d539e6.xml*d0/assets/46ee03be-63d8-44ec-bea5-0c40602a07f2.xmlt0/assets/5d5abca8-a151-49a9-a2a9-f5da12644cb4.xml:0/assets/6fc5d233-b8df-4900-aff4-ed9c230ce166.xml<
0/assets/712a1d62-5b76-41c8-8ea2-22ac512225c4.xmlI80/assets/7af399e8-396e-40ce-91c2-c8f198cb1f70.xmlR0/assets/83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb.xmlSQ0/assets/a9fa676d-f6ea-457c-9550-92f6f4bcc078.xml$0/assets/c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f.xml,0/assets/e43cbff5-61e6-4448-9bcc-5049277e3d12.xmlG,/pkiview.h1csz/PKIView.H1Fm/PKIView.H1T#:/PKIView.H1V{(/PKIView_AssetId.H1K]k/PKIView_BestBet.H1KHk/PKIView_LinkTerm.H1K3l/PKIView_SubjectTerm.H1Ko::DataSpace/NameList<(::DataSpace/Storage/MSCompressed/Content`,::DataSpace/Storage/MSCompressed/ControlDataT )::DataSpace/Storage/MSCompressed/SpanInfoL/::DataSpace/Storage/MSCompressed/Transform/List<_::DataSpace/Storage/MSCompressed/Transform/{8CEC5846-07A1-11D9-B15E-000D56BFE6EE}/InstanceData/i::DataSpace/Storage/MSCompressed/Transform/{8CEC5846-07A1-11D9-B15E-000D56BFE6EE}/InstanceData/ResetTablenH3::Transform/{8CEC5846-07A1-11D9-B15E-000D56BFE6EE}/mdQBNp4UncompressedMSCompressedFX쌡^
VLZXCHH<maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Delete Unused Objects from Active Directory Containers</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>There may be times when you need to uninstall a certification authority (CA). However, clients will not be able to send requests to this CA and some applications that depend on your public key infrastructure (PKI) may not function properly after a CA that is needed to verify the validity and revocation status of a certificate has been uninstalled.</maml:para>

<maml:para>If you are permanently decommissioning the CA before its expected expiration date, then the CA certificate should be revoked from its parent CA for a certificate revocation reason of "Cease of operation." If the CA is a self-signed root CA, then all certificates that have not expired should be revoked and a certificate revocation list (CRL) should be generated with the same reason. This will indicate that the certificates are no longer valid because the CA has been decommissioned.</maml:para>

<maml:para>When uninstalling an enterprise CA, it is important that it be uninstalled properly to ensure that its CA enrollment object is removed from Active Directory Domain Services (AD DS). Failure to do so may result in AD DS clients continuing to attempt to enroll against that CA. If an enterprise CA cannot be uninstalled normally, the Enterprise PKI snap-in can be used to manually remove the CA objects from AD DS.</maml:para>

<maml:alertSet class="note"><maml:title>Note </maml:title>
<maml:para>You should back up the entire server before uninstalling the CA.</maml:para>
</maml:alertSet>

<maml:para>Membership in <maml:phrase>Enterprise Admins</maml:phrase>, or equivalent, is the minimum required to complete this procedure.</maml:para>

<maml:procedure><maml:title>To remove unused certificate-related objects from Active Directory containers</maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open the Enterprise PKI snap-in.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>In the console tree, right-click <maml:ui>Enterprise PKI</maml:ui>, and then click <maml:ui>Manage AD Containers</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Select one of the containers, and select one or more objects within that container.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>View</maml:ui> to examine the contents of each object if you are uncertain whether any of the selected objects pertain to the CA that you are uninstalling.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>Remove</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Select a different container, and repeat steps 3 through 5 until you have removed all objects that you no longer need.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Add Published Certificates to Active Directory Containers</maml:linkText><maml:uri href="mshelp://windows/?id=a9fa676d-f6ea-457c-9550-92f6f4bcc078"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Enterprise PKI Overview</maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in provides a view of the status of all certification authorities (CAs) in one or more public key infrastructures (PKIs) in your network. Having a view of multiple CAs and their current status enables administrators to manage CA hierarchies and troubleshoot possible CA errors more easily and effectively. </maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Enterprise PKI Concepts</maml:linkText><maml:uri href="mshelp://windows/?id=46ee03be-63d8-44ec-bea5-0c40602a07f2"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Enterprise PKI Status Codes</maml:linkText><maml:uri href="mshelp://windows/?id=7af399e8-396e-40ce-91c2-c8f198cb1f70"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction><maml:content><maml:sections></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Install the Enterprise PKI Console</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in does not appear in the list of default Microsoft Management Console (MMC) snap-ins. The Enterprise PKI snap-in becomes available in the <maml:ui>Add/Remove snap-ins</maml:ui> list only after you have installed one or more Active Directory Certificate Services (AD CS) role services on the computer or you have installed the AD CS Remote Server Administration Tools from Server Manager.</maml:para>

<maml:para>You must be an administrator on the server to complete this procedure.</maml:para>

<maml:procedure><maml:title>To install the AD CS Remote Server Administration Tools</maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>In Server Manager, click <maml:ui>Add Features </maml:ui>to start the Add Features Wizard. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>In the <maml:ui>Select Features </maml:ui>window, click the plus sign that appears to the left of the <maml:ui>Remote Server Administration Tools </maml:ui>check box, and then click the plus sign to the left of the <maml:ui>Role Administration Tools </maml:ui>check box. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Select the <maml:ui>Active Directory Certificate Services </maml:ui>check box, click <maml:ui>Next</maml:ui>, and then click <maml:ui>Install</maml:ui>. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>When installation is complete, click <maml:ui>Close</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>

<maml:para>If the computer you want to perform remote administration tasks from is running Windows Vista, you can obtain the Remote Server Administration Tools Pack from the Microsoft Download Center (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkId=89361</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkId=89361"></maml:uri></maml:navigationLink>).</maml:para>

<maml:para>After you have installed the AD CS Remote Server Administration Tools or installed one or more AD CS role services, you can proceed with the following procedure to install the Enterprise PKI snap-in.</maml:para>

<maml:para>You must be a local administrator to complete this procedure.</maml:para>

<maml:procedure><maml:title>To install the Enterprise PKI snap-in  </maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>Start</maml:ui>, click <maml:ui>Run</maml:ui>, type <maml:userInput>mmc</maml:userInput>, and then press ENTER. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>On the <maml:ui>File</maml:ui> menu, click <maml:ui>Add/Remove Snap-in</maml:ui>. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Add the <maml:ui>Enterprise PKI</maml:ui> snap-in to the list on the right. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>OK</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Using Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Enterprise PKI Concepts</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in is used to ensure that all of the following elements in a public key infrastructure (PKI) are functioning properly, available, and valid:</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:phrase>Certification authorities (CAs)</maml:phrase>. A CA accepts a certificate request, verifies the requester's information according to the policy of the CA, and then uses its private key to sign the certificate. The CA then issues the certificate to the subject of the certificate for use as a security credential within a PKI. A CA is also responsible for revoking certificates and publishing a certificate revocation list (CRL).</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>CA certificates</maml:phrase>. A CA certificate is a certificate issued by a CA to itself or to a second CA for the purpose of creating a defined relationship between the two CAs. A certificate that is issued by a CA to itself is referred to as a trusted root certificate. CA certificates are critical to defining the certificate path and usage restrictions for all end-entity certificates issued for use in the PKI.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>Authority information access locations</maml:phrase>. Authority information access locations are URLs that are added to a certificate in its authority information access extension. These URLs can be used by an application or service to retrieve the issuing CA certificate. These CA certificates are then used to validate the certificate signature and to build a path to a trusted certificate.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>CRLs</maml:phrase>. CRLs are complete, digitally signed lists of unexpired certificates that have been revoked. This CRL is retrieved by clients who can then cache the CRL (based on the configured lifetime of the CRL) and use it to verify certificates presented for use.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>CRL distribution points</maml:phrase>. CRL distribution points are locations, typically URLs, that are added to a certificate in its CRL distribution point extension. CRL distribution points can be used by an application or service to retrieve a CRL. CRL distribution points are contacted when an application or service must determine whether a certificate has been revoked before its validity period has expired.</maml:para>
</maml:listItem>
</maml:list>

<maml:para>The Certification Authority snap-in allows an administrator to monitor and manage these PKI elements for a single CA. However, separate instances of the snap-in need to be used to monitor and manage a PKI if more than one CA is involved. In addition, the Certification Authority snap-in cannot be used to integrate non-Microsoft CAs into the infrastructure and cannot be used to conveniently manage the authority information access locations and CRL distribution point stores. The Enterprise PKI snap-in, therefore, can be used to resolve these issues from a single snap-in.</maml:para>

<maml:para>For more information about how CAs, CA certificates, authority information access locations, CRL distribution points, and CRLs work together to create a public key trust hierarchy, see How Certificate Services Works (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkID=88045</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkID=88045"></maml:uri></maml:navigationLink>). </maml:para>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Enterprise PKI Overview</maml:linkText><maml:uri href="mshelp://windows/?id=31a9b9b7-a3d2-42f6-8f63-8b9e639755de"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para>Active Directory Certificate Services (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkID=48545</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkID=48545"></maml:uri></maml:navigationLink>)</maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Managing Active Directory Containers with Enterprise PKI</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>Enterprise certification authorities (CAs) publish certificates, certificate revocation lists (CRLs), and other data to Active Directory containers. The Enterprise PKI snap-in can be used to browse and manage objects in those containers.</maml:para>

<maml:para>The Active Directory containers that can be managed with the Enterprise PKI snap-in are:</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:phrase>NTAuthCertificates</maml:phrase>. Contains all of the CA certificates in the current forest. Certificates are added automatically when a new CA is installed by a member of the Enterprise Admins group. Certificates can also be added manually by using the <maml:ui>Manage AD Containers</maml:ui> dialog box.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>AIA</maml:phrase>. Contains CA certificates that can be retrieved by clients using the authority information access (AIA) certificate extension to build a valid certificate chain and to retrieve any cross-certificates issued by the CA.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>CDP</maml:phrase>. Contains all base CRLs and delta CRLs published in the forest. </maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>KRA</maml:phrase>. Contains the certificates for key recovery agents for the forest. Key recovery agents must be configured to support key archival and recovery. Key recovery agent certificates can be added to this container automatically by enrolling with an enterprise CA. The key recovery agent certificates cannot be added manually by using the <maml:ui>Manage AD Containers</maml:ui> dialog box.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>Certification Authorities</maml:phrase>. Contains the certificates for trusted root CAs in the forest. Root CA certificates are added automatically when a member of Enterprise Admins sets up an enterprise root CA or stand-alone root CA that is joined to the domain. Root CA certificates can also be added manually from the command prompt but not through the <maml:ui>Manage AD Containers</maml:ui> dialog box.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:phrase>Enrollment Services</maml:phrase>. Contains the certificates for enterprise CAs that are available to issue certificates to users, computers, or services in the forest. Enterprise CA certificates can only be added to this container by a member of Enterprise Admins who installs an enterprise CA. The certificates cannot be added manually by using the <maml:ui>Manage AD Containers</maml:ui> dialog box.</maml:para>
</maml:listItem>
</maml:list>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Using Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Add Published Certificates to Active Directory Containers</maml:linkText><maml:uri href="mshelp://windows/?id=a9fa676d-f6ea-457c-9550-92f6f4bcc078"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Delete Unused Objects from Active Directory Containers</maml:linkText><maml:uri href="mshelp://windows/?id=1b611375-0845-400c-8e35-3e4c52ef8b52"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Enterprise PKI</maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in makes it possible to monitor and manage one or more public key infrastructures (PKIs) and certification authorities (CAs) in an organization.</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Enterprise PKI Overview</maml:linkText><maml:uri href="mshelp://windows/?id=31a9b9b7-a3d2-42f6-8f63-8b9e639755de"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Using Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Troubleshooting an Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=712a1d62-5b76-41c8-8ea2-22ac512225c4"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction><maml:content><maml:sections></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Troubleshooting an Enterprise PKI</maml:title><maml:introduction>
<maml:para>Enterprise PKI is primarily a monitoring tool. As a monitoring tool, it may often be the first place that an administrator notices a problem or potential problem with the public key infrastructure (PKI). Therefore, it is important to understand how to find additional diagnostic and troubleshooting information in order to fix the problem promptly before it potentially becomes more serious.</maml:para>

<maml:para>If a warning or serious error is indicated on a server hosting a certification authority (CA) or Online Responder, you should examine the events logged in the Event Viewer on that computer for additional information that can help you diagnose and correct the problem.</maml:para>

<maml:para>For CA-related issues, such as problems connecting to a current certificate revocation list (CRL), use the Certification Authority snap-in to correct the problem.</maml:para>

<maml:para>For Online Responder–related issues, you can use the Online Responder snap-in to perform tasks such as correcting revocation configuration problems. </maml:para>

<maml:para>If Enterprise PKI indicates that one or more CA certificates are about to expire, use the Certificates snap-in to reissue or renew these certificates. </maml:para>

<maml:para>You can enable CryptoAPI 2.0 diagnostics to obtain more information about many PKI-related issues. </maml:para>

<maml:para>You must be a local administrator to complete this procedure.</maml:para>

<maml:procedure><maml:title>To enable advanced CryptoAPI 2.0 diagnostics </maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>Start</maml:ui>, point to <maml:ui>All Programs</maml:ui>, point to <maml:ui>Administrative Tools</maml:ui>, and then click <maml:ui>Event Viewer</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Expand the <maml:ui>Applications and Services Log</maml:ui>, <maml:ui>Microsoft</maml:ui>, and <maml:ui>Windows</maml:ui> folders.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open the <maml:ui>CAPI2</maml:ui> folder, right-click <maml:ui>Operational</maml:ui>, and click <maml:ui>Enable Log</maml:ui>. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>If there is data present in the log before you reproduce a problem, right-click <maml:ui>Operational</maml:ui>, and click <maml:ui>Clear Log</maml:ui>. This allows only the data relevant to the problem scenario to be collected from the saved log. </maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open the Services snap-in console, right-click <maml:ui>Active Directory Certificate Services</maml:ui>, and click <maml:ui>Restart</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>After you have collected event data, save the log file by right-clicking <maml:ui>Operational</maml:ui>, clicking <maml:ui>Save Events as</maml:ui>, and typing a name for the event file. You can save the log file in the .evtx format (which can be opened through the Event Viewer) or in .xml format.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>

<maml:alertSet class="note"><maml:title>Note </maml:title>
<maml:para>The default maximum size for the event log is 1 MB. For CryptoAPI 2.0 diagnostics, the log can increase in size quickly and it is recommended to increase the maximum log size to at least 4 MB to capture relevant events. To increase the maximum log size, right-click <maml:ui>Operational</maml:ui>, and then click <maml:ui>Properties</maml:ui>. In the log properties, increase the maximum log size.</maml:para>
</maml:alertSet>

<maml:para>For more information about CryptoAPI 2.0 diagnostics, see Troubleshooting PKI Problems on Windows Vista (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkId=89570</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkId=89570"></maml:uri></maml:navigationLink>).</maml:para>

<maml:para>For more information about troubleshooting and resolving problems with CAs, CRLs, certificate access, and Online Responders, see Active Directory Certificate Services (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkId=89215</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkId=89215"></maml:uri></maml:navigationLink>).</maml:para>
</maml:introduction><maml:content><maml:sections></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Enterprise PKI Status Codes</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in provides a view of the status of the certification authorities (CAs) and Online Responders in one or more public key infrastructures (PKIs). In addition, the Enterprise PKI snap-in can be used to verify the validity and accessibility of authority information access locations and certificate revocation list (CRL) distribution points.</maml:para>

<maml:para>For each CA selected, the Enterprise PKI snap-in indicates one of the CA health states listed in the following table.</maml:para>

<maml:table>
<maml:tableHeader>
<maml:row>
<maml:entry>
<maml:para>Indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA state</maml:para>
</maml:entry></maml:row>
</maml:tableHeader>

<maml:row>
<maml:entry>
<maml:para>Question mark </maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA health state evaluation</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Green indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA has no problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Yellow indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA has one or more non-critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA has one or more critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red cross over CA icon</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CA is offline</maml:para>
</maml:entry></maml:row>
</maml:table>

<maml:para>If your environment includes one or more Online Responders, the Enterprise PKI snap-in can be used to monitor the status of these components. The indicators and health states in the following table apply to Online Responders.</maml:para>

<maml:table>
<maml:tableHeader>
<maml:row>
<maml:entry>
<maml:para>Indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder state</maml:para>
</maml:entry></maml:row>
</maml:tableHeader>

<maml:row>
<maml:entry>
<maml:para>Question mark </maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder health state evaluation</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Green indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder has no problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Yellow indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder has one or more non-critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder has one or more critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red cross over CA icon</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Online Responder is offline</maml:para>
</maml:entry></maml:row>
</maml:table>

<maml:para>The following status codes apply to CRL distribution points, delta CRL distribution points, and authority information access locations.</maml:para>

<maml:table>
<maml:tableHeader>
<maml:row>
<maml:entry>
<maml:para>Indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>CRL distribution point or authority information access state</maml:para>
</maml:entry></maml:row>
</maml:tableHeader>

<maml:row>
<maml:entry>
<maml:para>Question mark </maml:para>
</maml:entry>
<maml:entry>
<maml:para>Location health state evaluation</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Green indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Data is available and has no problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Yellow indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Data is available and has one or more non-critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red indicator</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Data is available but has one or more critical problems</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para>Red cross over CA icon</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Data is not available</maml:para>
</maml:entry></maml:row>
</maml:table>

<maml:para>For problems relating to the Online Responder, use the Online Responder snap-in to further diagnose and resolve the problem. For problems relating to CAs, CRL distribution points, and authority information access locations, use the Certification Authority snap-in to further diagnose and resolve the problem. In addition, check the Event log on the computers hosting the Active Directory Certificate Services (AD CS) role services for additional troubleshooting information that can help you identify and resolve any problems. For more information about troubleshooting CA, Online Responder, certificate validation, and revocation checking problems, see Active Directory Certificate Services (<maml:navigationLink><maml:linkText>http://go.microsoft.com/fwlink/?LinkId=89215</maml:linkText><maml:uri href="http://go.microsoft.com/fwlink/?LinkId=89215"></maml:uri></maml:navigationLink>).</maml:para>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Enterprise PKI Overview</maml:linkText><maml:uri href="mshelp://windows/?id=31a9b9b7-a3d2-42f6-8f63-8b9e639755de"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Configure the Enterprise PKI Snap-In</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>The left pane, or console tree, of the Enterprise PKI snap-in includes a tree view of the public key infrastructures (PKIs) and enterprise certification authorities (CAs) in an organization. </maml:para>

<maml:para>If you select a specific PKI in the console tree, the details pane displays the status of the entire PKI: <maml:ui>OK</maml:ui>, if everything is properly configured and functioning correctly, or <maml:ui>Error</maml:ui>, if there are problems that require attention.</maml:para>

<maml:para>If you select a specific CA in the console tree, additional information that can be used to identify the source of an Error condition is displayed, including whether the following are available, expiring, or unavailable:</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para>CA certificate</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para>Authority information access locations</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para>Certificate revocation list (CRL) distribution points </maml:para>
</maml:listItem>

<maml:listItem>
<maml:para>Delta CRL distribution points</maml:para>
</maml:listItem>
</maml:list>

<maml:para>By right-clicking the name of the PKI in the console tree, you can configure when you want to display alerts for the following components of the CAs in that hierarchy.</maml:para>

<maml:table>
<maml:tableHeader>
<maml:row>
<maml:entry>
<maml:para>Component</maml:para>
</maml:entry>
<maml:entry>
<maml:para>Description</maml:para>
</maml:entry></maml:row>
</maml:tableHeader>

<maml:row>
<maml:entry>
<maml:para><maml:ui>Set certificate status to Expiring when expiring in</maml:ui></maml:para>
</maml:entry>
<maml:entry>
<maml:para>Number of days before a CA certificate expires that a warning will appear</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para><maml:ui>Set CRL status to Expiring when expiring in</maml:ui></maml:para>
</maml:entry>
<maml:entry>
<maml:para>Number of hours or days before a CRL expires that a warning will appear</maml:para>
</maml:entry></maml:row>

<maml:row>
<maml:entry>
<maml:para><maml:ui>Set Delta CRL status to Expiring when expiring in</maml:ui></maml:para>
</maml:entry>
<maml:entry>
<maml:para>Number of hours or days before a delta CRL expires that a warning will appear</maml:para>
</maml:entry></maml:row>
</maml:table>

<maml:para>Membership in the local<maml:phrase> Administrators </maml:phrase>group, or equivalent, is the minimum required to complete this procedure.</maml:para>

<maml:procedure><maml:title>To modify warning options for a PKI</maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open the Enterprise PKI snap-in.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>In the console tree, right-click <maml:ui>Enterprise PKI</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>Options</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Review and modify the days or hours listed for the CA certificate, CRLs, and delta CRLs.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>OK</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>On the <maml:ui>Action</maml:ui> menu, click <maml:ui>Refresh</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Using Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Add Published Certificates to Active Directory Containers</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>All certification authority (CA) certificates in the Active Directory domain of the current forest are stored in the NTAuthCertificates container. Enterprise CA certificates are added automatically when a new CA is installed. </maml:para>

<maml:para>If a CA certificate is not added automatically when the new CA is created, such as a stand-alone CA created by a user who is not a member of the Enterprise Admins group, the CA certificate can still be added manually to the NTAuthCertificates container. This process can also be used to add the CA certificate of a non-Microsoft CA that has been used to issue smart card logon or domain controller certificates. By publishing these CA certificates to the Enterprise NTAuth store, the administrator indicates that the CA is trusted to issue certificates of these types.</maml:para>

<maml:para>Membership in <maml:phrase>Enterprise Admins</maml:phrase>, or equivalent, is the minimum required to complete this procedure.</maml:para>

<maml:procedure><maml:title>To add a certificate to the NTAuthCertificates container by using the Windows interface</maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Export the certificate of the CA to a .cer file that supports either the Distinguished Encoding Rules (DER)-encoded binary format or the base-64 encoded X.509 format.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open the Enterprise PKI snap-in, right-click <maml:ui>Enterprise PKI</maml:ui> in the console tree, and click <maml:ui>Manage AD Containers</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click the <maml:ui>NTAuthCertificates</maml:ui> container.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Click <maml:ui>Add</maml:ui>, and browse to the .cer file for the certificate that you want to add. Click <maml:ui>OK</maml:ui>.</maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>

<maml:para>You can also add a certificate to the NTAuthCertificates container by using the Certutil command-line tool.</maml:para>

<maml:procedure><maml:title>To add a certificate to the NTAuthCertificates container by using a command line</maml:title><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Export the certificate of the CA to a .cer file that supports either the DER-encoded binary format or the base-64 encoded X.509 format.</maml:para>
</maml:section></maml:sections></maml:step><maml:step><maml:sections><maml:section><maml:title></maml:title>
<maml:para>Open a command prompt window, type the following command, and press ENTER:</maml:para>

<maml:para><maml:codeInline>certutil -dspublish -f filename NTAuthCA</maml:codeInline></maml:para>
</maml:section></maml:sections></maml:step></maml:procedure>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Delete Unused Objects from Active Directory Containers</maml:linkText><maml:uri href="mshelp://windows/?id=1b611375-0845-400c-8e35-3e4c52ef8b52"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Manage Certification Authorities with Enterprise PKI</maml:title><maml:introduction></maml:introduction><maml:content><maml:sections><maml:section><maml:title></maml:title><maml:introduction>
<maml:para>Certification authorities (CAs) are listed by name and by their location within a public key infrastructure (PKI), with root CAs located at the top of the hierarchy and subordinate CAs below. CAs can be listed either in the console tree or details pane, depending on whether the PKI or a CA is selected in the console tree. When a CA is double-clicked in the details pane, it will be expanded and selected in the console tree.  </maml:para>

<maml:para>CA status information will be listed as <maml:ui>OK</maml:ui>, <maml:ui>Warning</maml:ui>,<maml:ui> Error</maml:ui>, or<maml:ui> Unable to download</maml:ui>. These status messages indicate whether there is a problem with some aspect of the CA, either the CA certificate, the CRL distribution point locations, or the authority information access locations, or that status information was not obtained. For specific error status messages and their meaning, see <maml:navigationLink><maml:linkText>Enterprise PKI Status Codes</maml:linkText><maml:uri href="mshelp://windows/?id=7af399e8-396e-40ce-91c2-c8f198cb1f70"></maml:uri></maml:navigationLink>.</maml:para>

<maml:para>If a problem or warning only applies to a subordinate CA, then the error indicator will only appear on the icon for that CA.</maml:para>

<maml:para>When you right-click a CA or click the <maml:ui>Action</maml:ui> menu, two unique options appear:</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:ui>Manage CA</maml:ui>, which opens the Certification Authority snap-in. If the user has the appropriate permissions, the Certification Authority snap-in can then be used to perform various management tasks for the CA.</maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:ui>Refresh</maml:ui>, which initiates an update to all of the status information available for that CA.</maml:para>
</maml:listItem>
</maml:list>

<maml:para>For more information about customizing when different warning codes appear, see <maml:navigationLink><maml:linkText>Configure the Enterprise PKI Snap-In</maml:linkText><maml:uri href="mshelp://windows/?id=83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb"></maml:uri></maml:navigationLink>.</maml:para>
</maml:introduction>
<maml:sections>
<maml:section><maml:title></maml:title><maml:introduction></maml:introduction>
<maml:sections>
<maml:section>
<maml:title>Additional references</maml:title><maml:introduction>
<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Using Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction></maml:section>
</maml:sections>
</maml:section>
</maml:sections>
</maml:section></maml:sections></maml:content></maml:conceptual><maml:conceptual contentType="conceptual" xmlns:maml="http://schemas.microsoft.com/maml/2004/10" xmlns:dev="http://schemas.microsoft.com/maml/dev/2004/10"><maml:title>Using Enterprise PKI</maml:title><maml:introduction>
<maml:para>The Enterprise PKI snap-in is primarily a monitoring tool, and many of the issues identified when you use Enterprise PKI can be resolved by using the Certificate Templates, Certification Authority, or Online Responder snap-ins. However, one set of tasks, involving Active Directory Certificate Services (AD CS) containers, can be completed directly from the Enterprise PKI snap-in.</maml:para>

<maml:list class="unordered">
<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Install the Enterprise PKI Console</maml:linkText><maml:uri href="mshelp://windows/?id=33b841f7-6e71-4185-b76e-857658d539e6"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Configure the Enterprise PKI Snap-In</maml:linkText><maml:uri href="mshelp://windows/?id=83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Manage Certification Authorities with Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>

<maml:listItem>
<maml:para><maml:navigationLink><maml:linkText>Managing Active Directory Containers with Enterprise PKI</maml:linkText><maml:uri href="mshelp://windows/?id=5d5abca8-a151-49a9-a2a9-f5da12644cb4"></maml:uri></maml:navigationLink></maml:para>
</maml:listItem>
</maml:list>
</maml:introduction><maml:content><maml:sections></maml:sections></maml:content></maml:conceptual><?xml version="1.0" encoding="utf-8"?>
<HelpCollection Id="PKIView" DTDVersion="1.0" FileVersion="" LangId="1033" Copyright="© 2005 Microsoft Corporation. All rights reserved." Title="Enterprise PKI" xmlns="http://schemas.microsoft.com/help/collection/2004/11">
	<CompilerOptions CompileResult="H1S" CreateFullTextIndex="Yes" BreakerId="Microsoft.NLG.en.WordBreaker">
		<IncludeFile File="PKIView.H1F" />
	</CompilerOptions>
	<TOCDef File="PKIView.H1T" Id="PKIView_TOC" />
	<VTopicDef File="PKIView.H1V" />
	<KeywordIndexDef File="PKIView_AssetId.H1K" />
	<KeywordIndexDef File="PKIView_BestBet.H1K" />
	<KeywordIndexDef File="PKIView_LinkTerm.H1K" />
	<KeywordIndexDef File="PKIView_SubjectTerm.H1K" />
	<ItemMoniker Name="!DefaultTOC" ProgId="HxDs.HxHierarchy" InitData="AnyString" />
	<ItemMoniker Name="!DefaultFullTextSearch" ProgId="HxDs.HxFullTextSearch" InitData="AnyString" />
	<ItemMoniker Name="!DefaultAssetIdIndex" ProgId="HxDs.HxIndex" InitData="AssetId" />
	<ItemMoniker Name="!DefaultBestBetIndex" ProgId="HxDs.HxIndex" InitData="BestBet" />
	<ItemMoniker Name="!DefaultAssociativeIndex" ProgId="HxDs.HxIndex" InitData="LinkTerm" />
	<ItemMoniker Name="!DefaultKeywordIndex" ProgId="HxDs.HxIndex" InitData="SubjectTerm" />
</HelpCollection><?xml version="1.0" encoding="utf-8"?>
<HelpFileList xmlns="http://schemas.microsoft.com/help/filelist/2004/11">
	<File Url="assets\1b611375-0845-400c-8e35-3e4c52ef8b52.xml" />
	<File Url="assets\31a9b9b7-a3d2-42f6-8f63-8b9e639755de.xml" />
	<File Url="assets\33b841f7-6e71-4185-b76e-857658d539e6.xml" />
	<File Url="assets\46ee03be-63d8-44ec-bea5-0c40602a07f2.xml" />
	<File Url="assets\5d5abca8-a151-49a9-a2a9-f5da12644cb4.xml" />
	<File Url="assets\6fc5d233-b8df-4900-aff4-ed9c230ce166.xml" />
	<File Url="assets\712a1d62-5b76-41c8-8ea2-22ac512225c4.xml" />
	<File Url="assets\7af399e8-396e-40ce-91c2-c8f198cb1f70.xml" />
	<File Url="assets\83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb.xml" />
	<File Url="assets\a9fa676d-f6ea-457c-9550-92f6f4bcc078.xml" />
	<File Url="assets\c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f.xml" />
	<File Url="assets\e43cbff5-61e6-4448-9bcc-5049277e3d12.xml" />
</HelpFileList><?xml version="1.0" encoding="utf-8"?>
<VTopicSet DTDVersion="1.0" xmlns="http://schemas.microsoft.com/help/vtopic/2004/11">
	<Vtopic Url="assets\1b611375-0845-400c-8e35-3e4c52ef8b52.xml" RLTitle="Delete Unused Objects from Active Directory Containers">
		<Attr Name="assetid" Value="1b611375-0845-400c-8e35-3e4c52ef8b52" />
		<Keyword Index="AssetId" Term="1b611375-0845-400c-8e35-3e4c52ef8b52" />
		<Keyword Index="AssetId" Term="1b611375-0845-400c-8e35-3e4c52ef8b521033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="1b611375-0845-400c-8e35-3e4c52ef8b52" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\31a9b9b7-a3d2-42f6-8f63-8b9e639755de.xml" RLTitle="Enterprise PKI Overview">
		<Attr Name="assetid" Value="31a9b9b7-a3d2-42f6-8f63-8b9e639755de" />
		<Keyword Index="AssetId" Term="31a9b9b7-a3d2-42f6-8f63-8b9e639755de" />
		<Keyword Index="AssetId" Term="31a9b9b7-a3d2-42f6-8f63-8b9e639755de1033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="31a9b9b7-a3d2-42f6-8f63-8b9e639755de" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\33b841f7-6e71-4185-b76e-857658d539e6.xml" RLTitle="Install the Enterprise PKI Console">
		<Attr Name="assetid" Value="33b841f7-6e71-4185-b76e-857658d539e6" />
		<Keyword Index="AssetId" Term="33b841f7-6e71-4185-b76e-857658d539e6" />
		<Keyword Index="AssetId" Term="33b841f7-6e71-4185-b76e-857658d539e61033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="33b841f7-6e71-4185-b76e-857658d539e6" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\46ee03be-63d8-44ec-bea5-0c40602a07f2.xml" RLTitle="Enterprise PKI Concepts">
		<Attr Name="assetid" Value="46ee03be-63d8-44ec-bea5-0c40602a07f2" />
		<Keyword Index="AssetId" Term="46ee03be-63d8-44ec-bea5-0c40602a07f2" />
		<Keyword Index="AssetId" Term="46ee03be-63d8-44ec-bea5-0c40602a07f21033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="46ee03be-63d8-44ec-bea5-0c40602a07f2" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\5d5abca8-a151-49a9-a2a9-f5da12644cb4.xml" RLTitle="Managing Active Directory Containers with Enterprise PKI">
		<Attr Name="assetid" Value="5d5abca8-a151-49a9-a2a9-f5da12644cb4" />
		<Keyword Index="AssetId" Term="5d5abca8-a151-49a9-a2a9-f5da12644cb4" />
		<Keyword Index="AssetId" Term="5d5abca8-a151-49a9-a2a9-f5da12644cb41033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="5d5abca8-a151-49a9-a2a9-f5da12644cb4" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\6fc5d233-b8df-4900-aff4-ed9c230ce166.xml" RLTitle="Enterprise PKI">
		<Attr Name="assetid" Value="6fc5d233-b8df-4900-aff4-ed9c230ce166" />
		<Keyword Index="AssetId" Term="6fc5d233-b8df-4900-aff4-ed9c230ce166" />
		<Keyword Index="AssetId" Term="6fc5d233-b8df-4900-aff4-ed9c230ce1661033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="6fc5d233-b8df-4900-aff4-ed9c230ce166" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\712a1d62-5b76-41c8-8ea2-22ac512225c4.xml" RLTitle="Troubleshooting an Enterprise PKI">
		<Attr Name="assetid" Value="712a1d62-5b76-41c8-8ea2-22ac512225c4" />
		<Keyword Index="AssetId" Term="712a1d62-5b76-41c8-8ea2-22ac512225c4" />
		<Keyword Index="AssetId" Term="712a1d62-5b76-41c8-8ea2-22ac512225c41033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="712a1d62-5b76-41c8-8ea2-22ac512225c4" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\7af399e8-396e-40ce-91c2-c8f198cb1f70.xml" RLTitle="Enterprise PKI Status Codes">
		<Attr Name="assetid" Value="7af399e8-396e-40ce-91c2-c8f198cb1f70" />
		<Keyword Index="AssetId" Term="7af399e8-396e-40ce-91c2-c8f198cb1f70" />
		<Keyword Index="AssetId" Term="7af399e8-396e-40ce-91c2-c8f198cb1f701033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="7af399e8-396e-40ce-91c2-c8f198cb1f70" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb.xml" RLTitle="Configure the Enterprise PKI Snap-In">
		<Attr Name="assetid" Value="83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb" />
		<Keyword Index="AssetId" Term="83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb" />
		<Keyword Index="AssetId" Term="83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb1033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\a9fa676d-f6ea-457c-9550-92f6f4bcc078.xml" RLTitle="Add Published Certificates to Active Directory Containers">
		<Attr Name="assetid" Value="a9fa676d-f6ea-457c-9550-92f6f4bcc078" />
		<Keyword Index="AssetId" Term="a9fa676d-f6ea-457c-9550-92f6f4bcc078" />
		<Keyword Index="AssetId" Term="a9fa676d-f6ea-457c-9550-92f6f4bcc0781033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="a9fa676d-f6ea-457c-9550-92f6f4bcc078" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f.xml" RLTitle="Manage Certification Authorities with Enterprise PKI">
		<Attr Name="assetid" Value="c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f" />
		<Keyword Index="AssetId" Term="c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f" />
		<Keyword Index="AssetId" Term="c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f1033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
	<Vtopic Url="assets\e43cbff5-61e6-4448-9bcc-5049277e3d12.xml" RLTitle="Using Enterprise PKI">
		<Attr Name="assetid" Value="e43cbff5-61e6-4448-9bcc-5049277e3d12" />
		<Keyword Index="AssetId" Term="e43cbff5-61e6-4448-9bcc-5049277e3d12" />
		<Keyword Index="AssetId" Term="e43cbff5-61e6-4448-9bcc-5049277e3d121033" />
		<Attr Name="appliesToProduct" Value="Windows Server 2008 R2" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHDATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISENOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDNOHVSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHSTANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="LHWEBSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2DATACENTERSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISEIA64SERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2ENTERPRISESERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2STANDARDSERVER" />
		<Attr Name="APPLIESTOPRODUCTSPECIFIC" Value="WS08R2WEBSERVER" />
		<Attr Name="appliesToSite" Value="BWCOnly" />
		<Attr Name="CommunityContent" Value="1" />
		<Attr Name="WillHaveMamlFeed" Value="True" />
		<Attr Name="zzpub_assetBug" Value="1756" />
		<Attr Name="zzpub_MtpsProductFamily" Value="WS" />
		<Attr Name="zzpub_MTPSVersion" Value="11" />
		<Attr Name="Locale" Value="kbEnglish" />
		<Attr Name="AssetID" Value="e43cbff5-61e6-4448-9bcc-5049277e3d12" />
		<Attr Name="TopicType" Value="kbArticle" />
	</Vtopic>
</VTopicSet><?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE HelpTOC>
<HelpTOC xmlns="http://schemas.microsoft.com/help/toc/2004/11" DTDVersion="1.0" Id="PKIView_TOC" FileVersion="" LangId="1033" ParentNodeIcon="Book" PluginStyle="Hierarchical">
	<HelpTOCNode Url="mshelp://windows/?tocid=c9ab745d-0263-4e38-9125-50ee175e1af6" Title="">
		<HelpTOCNode Url="mshelp://windows/?id=6fc5d233-b8df-4900-aff4-ed9c230ce166" Title="Enterprise PKI">
			<HelpTOCNode Url="mshelp://windows/?id=31a9b9b7-a3d2-42f6-8f63-8b9e639755de" Title="Enterprise PKI Overview">
				<HelpTOCNode Url="mshelp://windows/?id=46ee03be-63d8-44ec-bea5-0c40602a07f2" Title="Enterprise PKI Concepts" />
				<HelpTOCNode Url="mshelp://windows/?id=7af399e8-396e-40ce-91c2-c8f198cb1f70" Title="Enterprise PKI Status Codes" />
			</HelpTOCNode>
			<HelpTOCNode Url="mshelp://windows/?id=e43cbff5-61e6-4448-9bcc-5049277e3d12" Title="Using Enterprise PKI">
				<HelpTOCNode Url="mshelp://windows/?id=33b841f7-6e71-4185-b76e-857658d539e6" Title="Install the Enterprise PKI Console" />
				<HelpTOCNode Url="mshelp://windows/?id=83bb907f-765e-47c4-a8f7-1d4b7ae7e4eb" Title="Configure the Enterprise PKI Snap-In" />
				<HelpTOCNode Url="mshelp://windows/?id=c9a937d8-04d1-4c0b-af4f-c4f4194b7d2f" Title="Manage Certification Authorities with Enterprise PKI" />
				<HelpTOCNode Url="mshelp://windows/?id=5d5abca8-a151-49a9-a2a9-f5da12644cb4" Title="Managing Active Directory Containers with Enterprise PKI">
					<HelpTOCNode Url="mshelp://windows/?id=a9fa676d-f6ea-457c-9550-92f6f4bcc078" Title="Add Published Certificates to Active Directory Containers" />
					<HelpTOCNode Url="mshelp://windows/?id=1b611375-0845-400c-8e35-3e4c52ef8b52" Title="Delete Unused Objects from Active Directory Containers" />
				</HelpTOCNode>
			</HelpTOCNode>
			<HelpTOCNode Url="mshelp://windows/?id=712a1d62-5b76-41c8-8ea2-22ac512225c4" Title="Troubleshooting an Enterprise PKI" />
		</HelpTOCNode>
	</HelpTOCNode>
</HelpTOC><?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE HelpIndex>
<HelpIndex DTDVersion="1.0" Name="AssetId" /><?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE HelpIndex>
<HelpIndex DTDVersion="1.0" Name="BestBet" /><?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE HelpIndex>
<HelpIndex DTDVersion="1.0" Name="LinkTerm" /><?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE HelpIndex>
<HelpIndex DTDVersion="1.0" Name="SubjectTerm" /> puUP!VU?w.P*T*BRBR é)SRMҦU
D*Vh}]ag>z><b6MX Dn
""~Rm.f#64cHj` Hщ
Pofb+[셷OKWk)/7<C<nv9[~xxt/}{u'?q]ߐp][Cm
p_yP+o8ť<u{'|9Gۼ<}tDu=?s8{F|9tpK1_A~]7C׵\\^k|]~3ۿ}og7Ǧ.v}y}o-!%Za;~I۽ѿm+߆qDo3[ |Aȷk_靫EnػaMG1𦅿ɻ_8¾hxl~ӳ>O6ʍrOX6sC7G}sywN)[嫜wrؽߵ=oKق~,矿=S9ߦy=O߽XGܓ~}I~믄i~?sB^OtS2{hwgP~_|a6a0cu߲kZVd~sMw:un߭e|ʟ6㿮sm?Kzm5FN!wڽr}~]z_{Ư]g<Zgj?_wI]_kk-8w5ϳׄuӦWvzpZ|=kC|k׃Զ[׾^}W}~$ﻟ{/k>w;}~xؠ}}lcEcGFv~?Vҙ>l|>}lcOUǶQ_g_m֍aַvv]܀h[뫝w;vn
wܽ{sow~sn>{;x$?lً73~snݒ'&nMyܯn
rU=W5MrUMQ+_j-Ԃ}]u6拽RRx?Wl{=Rͩ|o|q|w}{}}}}vR+M::>RoR-v}Vԓ^gg`g_j]/)ԫþcg&ԳǾiggmϾog.mvӝRi<#>v"/jwqwmܾvo}5ܫwsu}{꯾vWS}w}\{;y׻wQxx ⑋0xy@ċK~c	{߾Oy\^,EkNu9Sn_
ux^m[//?Gw)+oy~)JtN靡)s:tSҙWS:g{JtW:gS3>S::tJ&|tuJ鼆O|OΈ霊OΙҝ)ҙ)ҝ)#)Yҝ')sS>S:s>:[SJg|t_錙Oҝ5)y9)ҝ=)A)9ҝE)yS:3>:S>S:3>:SJgV}t}Jtf֧Jv}tvJ<OΙҝc)Yg)s;t6g:SJgvOδҙS:g}JtۧJg}toǝS:3>:SJg<wOκ鼼OΙҝ{)s;tgwJ|N)ҝ)s;t{ҙS:gwJO)s<tΙ:SJg|xO)sV<t΋ҙ7S:gxJ!O)s<t31t2Ι
/ދx^/ŋx/^x^/ŋx/^x^/ŋx/^x^/ŋx/^x^/ŋx/^x^/ŋx/^x^/ŋx#4
ѣaC8Gh~4
"£?CGh6I>
%GChxD~4
GC0hT|48GG!ࣣ(hNT?ahh^?X֏ahn\?ahl|4_>
ïG|4b?ØGp4|>
kGC44~
6ڏ!hk?!hغ>
oG4~
8܏Hh4|>
wG!hh>
{GC04~
>G!0}4
>
DGðhh<}4">
CGp"rv?`00``00``00``00``00``00``00``00`QV{p~Awo%"߈{8uW姧N7Uܿt|7}wNՅoW<NA[I 2S)t
W~S|,=Yo"=
b1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#Fb1F#Ĉ1b#FhH]HHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHHK
Tbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbbck!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2dC!d2!CȐ2d
]?%'yuts]3׹?Gv¸p.\…p\.¸p.\…pݸw…p\.¸p.\…p\.gq…p᳸¸p.\…p\.v=\p\.¸p.\c\.W`p.\…p\.¸p.\…p\.œ]vGj}զnGka;#>}65vG|;^y'оc;_C(<<HCh<ǵ!q<$"fB\=.p≚iiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii9jjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjm\ۊgii۞liiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiijjګjjګjjڵrõ[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[[mVmV[ծ>4M44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM4͟o}n}'nop.\*,&njګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjګjjڷqm+(>iiiiiiiiiiiiiiiiiiiiiiii@iZiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiimiiiiiiiiiiiiiiiiiiiiiiiiiiii*?M44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44MM44Mmӌiiiiiiiiiiiiiiiiiiiiiiiiiiiiiiii{4M4n# &2f
{yh/ w˭PWZ<iWq(B%+nI+5>KW\
`W _{w_y_{^WVߔQU]&(knXiͭ:	!Q6C\fo$n
2Fl	d69Vv$$m,XX*QU?Cr$jۛ"M[@#_UVA1]@j'Q#=1(1qԸXݘwQ(}w-u
L/쨯7J!9'&M,pqV>r yLG41aP[.,;9w7mqk$KW]~CvH}{Г;c^rSEuȓ~֢r!CdRggh.Qu@¼Q*V@BZ3:ZuKtyNAIAn8U_sջVO ͨ(b1_ƣ՚hz0ʥ0|5˗,lMx-Xp0۾wζLv7J:7795Ygu8LHe()08_}WefD$&b\+znO"AWCDW3!yp|Ű~^%t_=)gH_8Q)5ԤB +[îegsLX۴Fͻ{FI~I8{Tv	a\QCnD{T-Ȑx᝷|zkZPkTlÝAC~QP)T幗VS~ӉtԻKCwኾ7ex]7E'z^IM-;5}Όv{
Q*[*f<Pqp^<2M1
BdqmZ}z(us
 XX07|B-em]!m
eJYw5rz	8vD.1U:C,wR1EfUPä!A
 2ۅNL=7spif
v.$[9MLp-N<ŋ5?bRqGXKv%lS!<V
o-G@¶\}WtP!t%V,&LnJ8D|O
(sR>N%U2C7U{Q+2mÔTBv5nJT}'e3SřS	#gБ&v9"
A[JZsTڜJ[T2+%9e!
KT"Vsu"ʨǩ(S&ͯ t:Kq&tpagO0ѹwtvl> 	/M~<kgU_z<Y]ǝhdXljº>;/4ZPR4/.MH3fڧe4f3GL€
Q,mkkh$lLwwTCYt
t*]%sof\h7pO'XYgJí)OIhzqQ,+z:]S#Dkg~̐Qd',F-T1Po	Mk٪>y(H)wDj!G'Paց[yE!s,-kl.$tEt'WJ[EHGfD˗xZAH==tBtds*s<=QUb;$!I
97GZ	Wjcf$
jvPpA5;o᤼FЕȰ
x-̯M~,dl<GO@0m"ϱ2vdc҅vX3s%He/BT*保a0񩴑s]֬mS?:[]0;.:|bb.R+u{RG7%WGpd_&2bv*
s?bĩ.1mǣJJL92c:xY],/~XXFʹVF$O9f5ok7CpS[#EGy@H?9dQEXEV?O9&zy	yvK_xQ(yBج\b~ώTdL4.@s&Pmi#I	0}"asҏy.ս#Phwf=+7ѯԳvp>
#%XPAZ,#>j|B3{GX-ZHpKΧ{i)' 0§8_V-V,9U0hە2ķ+#^LE@eةPg%5ۍgmH0aSӣ 7g=t~A5\j(WZ;
حY3|}NrXpwŕl^
\)أ8%Ka\&Jo)ٷWܬ2GF?-<uc٭_Ѧʃz֦Lcmߡ˔!
˰m9u|l
Sšٿ3zEy5޻EV
ACD0+zrRT՜vʙUj	kb
|[Kg*
:<IkfwJٶh-9QeO$&+"[ۯB̫6Eiˮ9&
 m!<d{zEy+&i{5a/I
y-ݾ:U Z:	Y8#GJIxqxcy)_viYcqίPG4MWrZJk>K~TNRa"Qx/!Тqd̺#g ^c8"LVt?b5d;|H`nj&^bl2dT9[.ov!+(R
\ F1x`)r[5CMgorQ90U&>:-"f\ܽыHOksET]Vfw̔tSk-S^(ߚ	VNQL	_[×2CPG	^gI#&4ewz<F6"s})*٥ռ&XQf,yT0H*<b/0+÷e
)(NA3Wx
NUx'#
k<X<Yx{e`2!ׅױ-)kI0NqJ+Gf"wFi27[
v#\#"I'vvao-3Qf]}jB[I `IzzsW} R7DG;>׽QQbݶb}@(o[#V#FP+xO9D8f֚Bmmʢc]?]Ox}!\)6v'ԑv,l,Sӕ>+ԒO|az|vU/
l
BpEզ-^_wR%ft`%Mz~']|B>#=juX>\OPe*¾22U*^A7C,K1{LP9u+ﺿū:.Z'9wXW'[H&0zDݍN*tmu+EKZ=(!ph"_Fen;n
4̾kQuy˧6|嫏)YDpa4A}ѫEaAmik4ŕkdpxBC:sk6ap?j?xs FOdC:Ī	!<[)[}HN1Bz:)V)-ܔqt܊'P[6(Qk_^@$;<ZMψǨ;tMLN͛\B6lS%GfI<דaaaP4

ڜ$[&y.gwTYz|+-ߗCV@	[$y8L;qyDEWۭTuAmL,P^׻QV']wluK3I̷:*W[ix2V6	RCkپ6ۿj]2$TZ:yq%k*8_K{UBѥ0H^0S0۬M\WkzAw^)'#ROd	PFP>+gAF^DToG
$bYX|*WAg]]Y,W	Dlڎ19kM i(ۇ=_ퟠ&8?-zTV.2EovJ)YJ?wCH{ZY81W[UFU<%-xK3n
2xWөliQw+Ee[i|Lf)1w/-oE@`.566!HCI$fgЦqXXpRƼb`qa/ٗK%"˂0\Uns*,
x#4"1/4{<<\	``````````````````````````````` R̘(TǐUJST[&`HTq9eQէ˽[MGJMШbʶœЧPB_UK EPO'Ȣ3얾Crar.Q˟bȟFI'KxLwm%(-=Յ}bYҫ/2dZ`wM^pIwWTpl</f(c᧓`ylђ@BՊ?
vA*-[if|@Xɪ+g'އ.mmH&o1:`}e.gϋW僩*ƴ3yG*0{ZHqn˒ŭAnS4ς7c0MM_>jKfWŋact)F"@Nr;L|Skߺw:T$z2gU\&9/c,Uv+,R47BCrNN
jQCVM95	ɰ9R*z#m"IJBI#(jW-&n45P
y^Ȟ
6,S|8ob2kن>=@[b}7Y^Ĝ4hN)9"mtD4(\ngB8X.bso/I]v45h\gcn[9nbxEpfnt.X:aݞlaUMQu
Z
"o$XnHU\K
Jgә}’'JR$Q['|u]cTX5v|%7J/(F*q#tƳ'0\s(Ƶ5]8y>.LUIE>,i*U'^1x%/5AaOd!߽{M3WؓxسWЩ6m$+ڠ6peHG_)%WLBZLMf7%ZCof9
~Lf~%c{^1x1Uodbx9l>M{7DXefYɼhȐ-t1P3'P
q&;{ar}C59Iȴ,	Ƃ
T1!?&ѱ&+~/plNO-^hoˏzrX-I9*20x')>{ۜ&=E]Wo8t㛺Ub$ܮ$}#=~DDK+M"*|ʾ0.z0W80/cl=|SE&Gcb"APB}B\Ѳ!H
20!t0ewH9B9~h
!Sѱ?!v[a8Zz*U[Pxוj_,zX}4܃nt "L;Bx>Eybm/}\W~YD@۬JV^
Jg͟>}jM}eRՊ *ʕ58<dqK[T
]~cSJ*`A9Xz|NЁpqc?
\b]N>˞nCaՇU2"HgYp5SpYs%ɐs^d+lWK-
ʈ1<S4IܝQMt<nJEq
Ey)9#4݈vm8j)xzOkn"(rcqC@6-`wF4"LRkqNQ*,nex-̹Zk㞸)GE tE8k.m	E҅HyKKi(9KMa=~$mY2QN9yVfh25o&%?[vi7S}N]e<u<(x=0o6"1j@1ٮEOy@apss+Ѽw^H_RPpErNLbXP@#Āo#BW\j !Vyޡ#xKwNOг}QG'J䉉@冈歷S
C hڗ[qU
31S`=c9/bwJ:(0\S:N6&/Vۺ1%:=wٹ8伌Zb0բCLJ@pk	׸"IQSVlYb'}9.Wc5	Kf!rxy:S-djSF6tidDb*WfhH(s#XV|.XvގOkp5,D;($e&oc=5?*;(>w"Vͪq
QCGJy{SE+pUٙR{ARU))JFx',ERZ]54ƢFqDg}]vkv{_xx4*ؖ[O3b=~QAo6(JJQƖp{w$L<爎?F	Q?5d5ڂ51_
C$C]pZ3/'W紞&[hatZS=/İa'`4e
>nDSu:d{W{hRW@5!`Wo=<JHa(E1	{MnR?LFD	J]?2K[Lb-PVT*m枰
hV/}K5`T5.+g)[d8;ulwCpw6gsmT;5WaOdVx$I+^Ufq0F|*	|it}>g1qeZ>y*PN",V*nw}Fvk(/|%7Q
%C2^&Bʝ
rB\a{CȟgS(5)ײ92C杸U7_5ˇ۷W#on-PCov~>*L'YGWY=HUGgj([g?~:"pE35E)"k^lZtS`MU-75x;eV>e޴,,4*rYG-pvLMr30H?IOĘM5aRHW;Rw
QQeW{(>xՎylӜᜊud sW.۳g.7RF&M0*NjGQ4,d&k	Cxښl"!?G[f<M1
gYɾϺPIR#siSb
Եʹ[!:Dk1ԣE$xM!c*:kx!yEɱ^8ƚ@ͩ(ގu/e$	{
j+D]
GwFLe57jR;	?89ʟx=Vz>%;ۛ5x0cRF|Z[kbI#']?O@GH]\]4]h;x
!69_nܕE+h)vNE]WEmklvJ!X(ABrYdu}-\=AwP#gI1gxާO D(D?>@G<q-A㋥Gu,9wH8&no	³̏pi=o9ogy
qcK+(NdJU"7CPjCs-<TF6dRjB.
YӟJ"7J
K-Z+[zYbߴS5foZ"j͎+¸?x
$)!|
;C.	XYF+`Ƣ*5{)pX˓In۰TŰ+{mcX%i6m،6C
H \',I9byxoR~nW%
?V!R)xaR
auH"g^'}pdefQ7$d`^uW|
uc|h*
55R[CdFPtOaF͠+[/WYWCj+|ah	+7¯o`Z˧jKRC85:ɐ&(Ϙ!{\mXgU8蹿H&k|x`@[Gi<'w	Nrb0M
)flق:9+.uBL^S=hx/:i8;	z
&N8ùda#S1Z ҋVu(ӕ2syay|O--%1q"]ѨXO4A+T&V"! 9Pu[H _p"0vѝeZw=!=Tjn<%"Pm6yM_Z9f}UC
c̕%"z#fӝDtu~y^x祆G暂K頟1
k3u%qh̎],|Em]!<Y?S`NWųX]#>'7_rp9A[g1fNW٧њ&:z|_C70"ݳ35_o&y֔2x
C!*J)*7\&#rI>nA1XhrYrab'<)!&ʲ)gX0!s9D}Bbe#m*MM%$V2#85?uꇱCq{5^d1Nsi3yr"&4Fu5iBʃ`:X,>"0&Z紓JM,T8"\ʴv,sWv]pF0
bCǩNR[He?
{LJCjS'vx%Ԗզ_	60rbc!&BM%%;_'b6S[
ǎˇs0!#xBRN~iN!)^82NUc3bS#_"a1"$"&N
v
7["!ݖ䦧x|%>`#B'Pk:g>QpNiY0$Fr
tng6`BݝjbR6^c		h̐PP@f1$0쁡t73~\m'eT&a3:'-/0~],K,wkD#=q(Li6q	;ͯƞ	n44=]fC\ʬa'
;):DKV`Eh]9[|#ol/=q=iu7‘\D~ҸBw5;׉ƹp]*X
i>GHj|phxy?6K#}JriUxv5w<)>r|OOk
lĜ ]alFS/atw|8.hx=Fϧd#2Svz|
}qz|`u<@z팛[0p}Hu{g?r6&?h@h6xHwI
!f-iQ6lj42K83Ҏ@͉>1ws$\h܃v\ւu]i$"NZ\hhlE}dAڟBm4OO>2Fй"rom-&6},u|uU.}`@#6IiR9@qCMF$,s2>2'z+c·#U>@hb[sy8$" rٮ#ftmG!.C^%qrPF^`,C
GEӶAFT:?ٻjTZ`@ۊG=܆M4s0Vkyҳ$u)WtVn6)V9JVt䌅8.
ttbGd&~3f#xMsTFʉ~&{v5uRW"ώaPn&|u\ٱsom"G7
X
ϵZaD4To~ch60Wo?ɦyۚ~m9m<EXX3NN/ې&u<Ԍ!RGZC_vay@s~So}Sc!g1@e*+Z
3	
|tvVP(:
M?"#1B]?"t0_NsSpu:0(=L΅4_D3%BS`u+1"9>X
O1I$Ef݋=IY1ĭn0+<h|;gd5/*YΦO&	lYO11K]`
3bb$d[2Mpή+<O-&lxGg3b7KV%
.pC{o9s05
;:	Tː&Д
iR2Sګ1$b̥̬f6}vu43׻d=]3Y1̟_=IHC~_4a51djL
PSlj`
@n(WLEGd,
{)~OB
W,wO{!+gn;(Õ3KyNbʙI2fiv3b\4w;ߙQ1lY̪H+ng;+DK÷3yjۙμf6糐>E```````d’;p H:^/v{ZM:dx-uD2fOFo;?`ൃ$~rX	:Vdohn
tZewks8Mkd3Q-J:"4^]x_=G˕3zW-cwrGv8!tP/MOGh&qo95=_xIwAMp@P8zzg!bϤz6
ՓgT|=8bӯca~:lM=2w3fh[@rYvC9	g$`6	sެIHr{ۛw&o$9䍝-m#2MR=thW>H9&nL&[ZsJiqv11	dоRǀqog؞)oҝyM9"pΜ?η
LO*sC+MmN.=g[;A@en@o
=̙mI&pM*(ی	;9H;{>An#ߘكѮH:qw&Pn(7|1ߕu~07<L?H^gG4*βfv>+7'JΉ͡sb|ؤߜ(9'V̝؜9ߖ&7'IΉmMsb|؏ٵ]ؗO],!ޚ&%
{#R!Aźj43EY_}#0
1/)p+Y+..f@@C-zJ1ԀƝ.RcW$1cUEwDzc4nU4bÀ'wHw`55/cgȢbi]aR<Q+:j̡ȞJ*qU2-p`^#B"Ll0]a;s4l(Usls>1Yb1æ^"29FL;<''O"R1,;O1D[(	\P>y2w	ƓP'Nقn"1 I{;I/GT-媟חV2ޫt'a2CX˵
4/٣JΪJ5튙l]q+AbUe'> b]~*"-f 8 A,+ibAaP,[FVsvƑB
	atyHme~Cﴏ:DC9Ս$&St!1&J_1G:)+c̀r\WzM!'sp酹_+BsMȖ_o~Hb?q_!3-^*8l#{q}~?Pb>1ا!6#?`OZ$
z(d$$s‘ǽ_H:DCpVʱٹ&O
orP(=$jlQlg`I`!aHREb	<"g0ldݥ;ǥ543R88=@*oJߛT#dEړcٱ|FoNl$Gm|W-r0ۙaMA,mne>( (`M&.D

Anon7 - 2022
AnonSec Team