Is there a way to enforce passphrase to certificates requested by user with RCM ?
Originally Published: 2007-05-09
Article Number
Applies To
Microsoft Windows 2003 Server SP1
Microsoft Internet Explorer
Issue
Resolution
Currently the only way to force users to selected a passphrase is through the registry.
Here are steps:
***
Go to start\settings\control panel\administrative tools\local security policy\ security options
Select in "system cryptography" user must enter a password each time they use key
***
With the enrollment page, we can have the security option come up for the user, but the default option presented is "Medium" which is no passphrase. They would need to select "High".
See solution How to set default for KCA enrollment to protect private key for more details
Notes
Related Articles
Is there a way to auto-populate the subjectAltNames extension with user's email address? 12Number of Views Is there a way to import Review Results from one environment to another in RSA Identity Governance & Lifecycle? 10Number of Views Is there a way to list all issued certificates in RSA Certificate Manager? 20Number of Views Is there a way to disable logging for the ACE/Server Administration API to the system logs 3Number of Views Is there a way to remove a patch or hotfix from RSA Identity Governance & Lifecycle? 79Number of Views
Trending Articles
Passwordless Authentication in Windows MFA Agent for Active Directory – Quick Setup Guide RSA Authentication Manager Upgrade Process RSA Authentication Manager 8.9 Release Notes (January 2026) An example of SSO using SAML and ADFS with RSA Identity Management and Governance 6.9.x RSA Authentication Manager 8.8 Setup and Configuration Guide
Don't see what you're looking for?