Fixed issues

Fixed issues in 1912

Compared to: Federated Authentication Service 1909

Federated Authentication Service 1912 contains the following fixes:

  • In the properties of the Citrix_SmartcardLogon certificate template, the description of the Key Usage extension should contain ‘Digital signature’ and ‘Key encipherment’ only, but lists additional items. However, the certificates issued using this template are correct. [CVADHELP-14040]

  • When the FAS administration console is used to deploy certificate templates into Active Directory, the template security permissions no longer include the “auto-enroll” permission. This permission is not needed for correct FAS operation, and caused unwanted enrollment attempts by domain computers in some customer deployments. [AUTH-224]