-
In the Failover Cluster Management snap-in, right-click Role and select Configure Role.
-
On the Before you Begin page, click Next.
-
From the role list, select Generic Service and click Next.
"Select Role" Window
-
From the service list, select Active Directory Certificate Services and click Next.
-
On the Client Access Point page, enter the role name in the Name field and click Next.
"Client Access Point" Window
-
Select the disk storage that is still mounted to the node and click Next.
-
Configure a shared registry hive, select the Add button, enter
SYSTEM\CurrentControlSet\Services\CertSvcand click OK.
"Replicate Registry Settings" Window
-
Click Next on the Confirmation page.
-
Click Finish to complete the failover role configuration.
-
Open the Failover Cluster Manager and verify that the newly created Roles Status is in the Running state and Green.
-
The AD CS Failover was configured successfully. At this stage, you can move the certification authority between all nodes.