This document intends to explain how to manage certificates within a Windows operating system.
Export a certificate
1. Run MMC > File > Add/Remove Snap-in > Select Certificates> Click Add, chose COMPUTER ACCOUNT >Next > Local Computer > Finish > OK.
2. Browse to Personal > Certificates, and right click on ST Root Authority > All Tasks > Export. Click Next at the welcome screen.
3. Select Yes, Export the Private Key, click next.
4. Check the box for Export all extended properties, then click Next.
5. Enter and confirm a password, one is required. Click on Next.
6. Specify the path and filename to save the .pfx file. It is recommended to put something in the file name that designates which type of Certificate you are exporting. Click on Save. Click on Next, and then click on Finish.
7. Now browse to Trusted Root Authentication Authorities > Certificates, and right click on ST Root Authority > All Tasks > Export. Complete the same steps 3-6 listed above for also exporting this Certificate. Save this Certificate with a different intuitive file name.
6. Copy the Certificates to a SAFE location!!! Some of our Shavlik scripts clean-up many folders in many different paths.
Import a certificate
1. Run MMC > File > Add/Remove Snapin > Select Certificates> Click Add, chose COMPUTER ACCOUNT >Next > Local Computer > Finish > OK.
2. Browse to Personal > Certificates, and right click on Certificates > All Tasks > Import. Click Next at the welcome screen.
3. Browse to the SAFE location where you saved the Personal Certificate, change the file type pull down box to All Files (*.*). Select your *.pfx file, and click on Open.
4. Next
5. Enter the password you specified during the export process, check both bottom option boxes, and then click Next.
6. Select to Place the Certificate in the following store (make sure Personal or Trusted Root Certification Authorities is displayed, based on what type of Certificate you are importing). Click Next.
7. Click on Finish and then OK.
8. Now browse to Trusted Root Authentication Authorities > Certificates, and right click on Certificates > All Tasks > Import. Complete the same steps 3-7 listed above for also importing the Trusted Root Authentication Authorities Certificate.
Copying a certificate
1. Run MMC > File > Add/Remove Snapin > Select Certificates> Click Add, chose COMPUTER ACCOUNT >Next > Local Computer > Finish > OK.
2. Copy the Personal > Certificate “ST Root Authority” to the Intermediate Certification Authorities > Certificate store. To do this, browse to Personal > Certificates, and right click on ST Root Authority > Copy.
3. Now browse to the Intermediate Certification Authorities > Certificates, and right click and select paste.
Additional information about certificates:
How to update Root Certificate information: http://community.shavlik.com/docs/DOC-22945
Shavlik Protect console certificates: http://community.shavlik.com/docs/DOC-23005