For WSTEP enrollment, Certificate Enrollment Gateway supports secure LDAP (LDAPS) connections with Active Directory. LDAPS connections with Active Directory is optional. The following topics describe how to configure Active Directory for secure LDAP.

The server certificate for Active Directory LDAPS communications must include a valid HTTP CRL Distribution Point.