Even if my Certificate Request is generated with DSA, Windows 2003 CA still generate the certificate with RSA as signature algorithm, how can I change it so that it uses DSA instead since DSA is listed as supported by Microsoft.