pp108 : Configuring Certification Authorities in the Trust Store

Configuring Certification Authorities in the Trust Store

This topic describes the procedure for configuring the certification authorities in the trust store.


Before users try to login using their certificates, the certification authorities (CA) associated with those certificates have to configured in the trust store of the server. If this step is skipped, users will not be able to login using their digital certificates.

  1. Click Start > Run and type mmc then press ENTER. The Console window appears.
  2. Click File > Add/Remove Snap-in... The Add/Remove Snap-in dialog box appears.
  3. Click Add... The Add Standalone Snap-in dialog box appears.
  4. Select Certificates from the list and click Add. The Certificates snap-in wizard appears.
  5. Select Computer account and Next.
  6. Continue with the default options and click Finish.
  7. Click Close to return to the Add/Remove Snap-in dialog box.
  8. Click OK button to return to the console.
  9. In the tree structure of the Console window, expand Certificates, right-click Trusted Root Certification Authorities and click All Tasks > Import... The Certificate Import Wizard appears.
  10. Follow the wizard to complete importing the root CA(s).

    The certificates are imported.

    Note: You must import intermediate CA(s) as well. Follow the above procedure and in step 9 right-click Intermediate Certification Authorities and complete step 10.