Deleted a CA improperly and receiving a 10009 Event ID error

certificate-authoritydcomeventviewerwindows-event-logwindows-server-2008-r2

The basic run down is I didn't know what I was doing and I deleted a CA I stood up but I couldn't get to work properly. I know dumb. But that being said not much I can do about it now. I went through and attempted to remove all parts of it from AD and DC but "DCOM was unable to communicate with the computer SUBCA.xxxxxxx.org using any of the configured protocols." error gets thrown a couple times an hour. Some people have said to get it out of DNS so I went in and removed it from there. They keep coming. I am fresh out of idea. It is a 2008 R2 server virtual environment. Which is why it was so easy to delete and mess it all up. It doesn't seem to be causing any issues besides cluttering up my event log. If any one has any suggestions or you have ideas let me know thanks!

Best Answer

First of all, if it's not causing issues... you might want to leave it alone, or get someone more experienced (or naive enough not to know it's a pain in the ass) to do it. It's a pain in the ass to do right, and you can do damage to AD if you mess up.

Having said that, this is the Technet article on how to manually clean up a CA. It says 2000/2003 domain, but also works in a 2008 domain.

Related Topic