Active Directory can store S/MIME certficates for users and X.509 Keyservers are one of the types of keyservers that can be added to PGP Encryption Server under Keys / Keyservers.
However, Active Directory servers require authentication and it is not possible to add authentication credentials using the PGP Encryption Server administration console. Without valid Active Directory credentials, PGP Encryption Server will be unable to look up user certificates in Active Directory.
PGP Encryption Server 10.5 and above.
The Active Directory server needs to be added as a Keyserver with the following attributes:
Once you have added the Keyserver entry for an Active Directory server, you need to update this entry in the database with the Distinguished Name and password of an Active Directory user that has permissions to read the S/MIME certificates of other Active Directory users.
Please contact Broadcom Technical Support for assistance in updating the database.
Once the Distinguished Name and password for the Active Directory has been added to the keyserver table, you can add the Keyserver to a mail rule under Mail / Mail Policy in the administration console so that the Active Directory keyserver will be searched when encrypted mail needs to be sent.