Bespoke PKI Certificate for Robert McCausland
Theory
• Information security
• Cryptography basics
• Types of certificates
• Certificate Processes and Interactions
• Certification Authorities
• Policies and PKI
• PKI Architecture
• Offline Root Certification Authority
• Hardware Security Module
• Deploying Two-Tier PKI Hierarchy
• Certificate Templates and Enrollment Methods
• Certificate Revocation
• Centralized Certificate Store
Labs
• Preparing virtual lab environment
• Creating and configuring domain environment
• Managing secure credentials
• Installing and configuring HSM simulator
• Installing and configuring RootCA, SubCA
• Configuring different enrolment methods
• Issuing different types of certificate users and computers
• Enabling autoenrollment for domain users and computers
• Securing websites using SSL
• Encrypting files and folders using EFS certificate template
• Signing documents
• Signing PowerShell scripts using Code Sign template
• Configuring Recovery agent
• Configuring Key Recovery Agent
• Configuring Enrolment Agent
• Installing and configuring Smartcard based access
• Configuring VPN connection
• Configuring IPSec
• Securing connection to domain and non-domain joined computers using SSL
• Revoking Certificates
• Configuring OCSP
• Configuring credential roaming
• Deploying Virtual Smartcards
• Backup and restore CA
• Renewing RootCA and SubCA certificates