Install Certification Authority management tools
To edit certificate template permissions, use the Certificate Templates snap-in within the Microsoft Management Console (MMC). You must install the Certification Authority Management Tools on an existing domain controller or on the same machine where the Autoenrollment Server is installed.
Nota
The Active Directory Certificate Services (AD CS) role must not be installed on any server within the domain, as it may interrupt Autoenrollment Server. While the Certification Authority Management Tools are usually included with AD CS, they can be installed separately if needed.
To add the certificate template snap-in, perform the following steps on the Autoenrollment server as a domain administrator.
Open the Server Manager tool.
Select Manage > Add Roles and Features.
Select Features and expand Remote Server Administration Tools > Role Administration Tools > Active Directory Certificate Services Tools.
Select Certification Authority Management Tools.
Select Next and then select Install.