Last updated
Last updated
To find AD CS Certificate Authorities (CA's) in a domain or forest, run Certify with the cas parameter.
This will output lots of useful information, including the root CA and subordinate CAs:
The Cert Chain is useful to note, as this shows us that "sub-ca" in the DEV domain is a subordinate of "ca" in the CYBER domain. The output will also list the certificate templates that are available at each CA, as well as some information about which principals are allowed to manage them.