Active Directory (UMROOT) Certificates

A new Certificate Authority has been established and new Root and Intermediate certificates are now being issued for the UMROOT Active Directory domain.

Units that have connections to Active Directory should download and install the newly issued certificates as soon as possible. This includes Linux servers and other network devices that may need to import the new certificate chain manually.

University Windows computers joined to Active Directory will trust it automatically, so this certificate is primarily of concern to Linux systems that authenticate against Active Directory.

Needed for:

  • Linux and Mac systems that use ldaps://adsroot.itcs.umich.edu to verify logins and passwords
  • Routers, VPN, and other appliances that use ldaps://adsroot.itcs.umich.edu to verify logins and passwords

Certificate Chain for SHA2