The MTG Autoenrollment Connector makes it possible to replace Microsoft AD CS as the issuing PKI with MTG CARA while continuing to use established Windows autoenrollment mechanisms. Existing processes such as autoenrollment, Group Policies, and Microsoft certificate templates can be integrated into the new PKI structure.
The migration requires corresponding configuration steps, for example for Certificate Templates, Enrollment Policies, Group Policies, and distribution of the new CA certificates.