Exporting Certificates From the Root CA In An Active Directory Environment


  • Question
    How can certificates be exported from the root CA in an Active Directory environment?

  • Answer
    • On the Certificate Authority server click start >> run.
    • Excute the MMC command.
    • Click File >> Add/Remove Snap-in.
    • Add "Certificates (Local computer)"

    Export the certificate as follows:

    Click next.

    Select the settings above and click next.

    Type a password, please remember it as it will be used later to import the certificate.

    Click next.

    Select a file name, this will be the generated certificate file.

    Click Finish.

    Download the latest OpenSSL for Windows package from: http://gnuwin32.sourceforge.net/packages/openssl.htm

    Use the openssl tool to convert the .pfx file to .pem format which can be imported to the Finjan as follows:
    openssl pkcs12 -in InputFilename -out OutputFilename.pem

  • Software Version

    8.4.3

    8.5.0

    9.0


  • This article applies to:
    NG 1000
    NG 5000
    NG 6000
    NG 8000
    This article was previously published as:
    Finjan KB 1802

    Last Modified 3/23/2009.
    https://support.trustwave.com/kb/KnowledgebaseArticle13547.aspx