Update windows/security/identity-protection/hello-for-business/hello-hybrid-key-trust-prereqs.md

Co-Authored-By: Nicole Turner <39884432+nenonix@users.noreply.github.com>
This commit is contained in:
Orlando Rodriguez 2019-05-13 11:59:46 -05:00 committed by GitHub
parent 70f35d9b55
commit 6f1af988de
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -63,7 +63,6 @@ The minimum required enterprise certificate authority that can be used with Wind
* The certificate must have a Certificate Revocation List (CRL) distribution point extension that points to a valid CRL. * The certificate must have a Certificate Revocation List (CRL) distribution point extension that points to a valid CRL.
* Optionally, the certificate Subject section should contain the directory path of the server object (the distinguished name). * Optionally, the certificate Subject section should contain the directory path of the server object (the distinguished name).
* The certificate Key Usage section must contain: * The certificate Key Usage section must contain:
Digital Signature, Key Encipherment
* Optionally, the certificate Basic Constraints section should contain: * Optionally, the certificate Basic Constraints section should contain:
[Subject Type=End Entity, Path Length Constraint=None] [Subject Type=End Entity, Path Length Constraint=None]
* The certificate Enhanced Key Usage section must contain: Client Authentication (1.3.6.1.5.5.7.3.2) and Server Authentication (1.3.6.1.5.5.7.3.1) * The certificate Enhanced Key Usage section must contain: Client Authentication (1.3.6.1.5.5.7.3.2) and Server Authentication (1.3.6.1.5.5.7.3.1)