Home All Groups Group Topic Archive Search About

Installing root certificate & chain

Author
20 Jun 2005 4:06 PM
chefo
Please excuse my loose expression but I am not IIS & PKI specialist. I
need to establish SSL with root certificate from local CA. To do so, I
need to install the root certificate chain on the server, so the client
certificates can be accepted. I have the der encoded certificates in
*.der files. When I step through the Server Certificate wizard in IIS,
Directory Security the options are:
- Create a new certificate
- Assign an existing certificate
- Import a certificate from a Key Manager backup file

If I choose the second options, the dialog lists the certificates in
the repository. Maybe I can add the certificates from the chain to this
repository?

If I choose the third option, I need to create a Key Manager backup
file. Is this possible? How can I start the Key Manager - I saw plenty
of topics about it, but I don't see an executable with this name. Is
this a separatе program? Or maybe I have to install MS Exchange - I
think it has a feature with that name.

Thaks all of you, I hope you can help me.

Author
24 Jun 2005 3:14 PM
IIS Guru
Hello,

The key manager is the same thing as the Certificates MMC.  Just go to
start - run - mmc
From there, add the certificates MMC.  I hope this helps.



--
IIS Guru
http://www.iisassistance.com


<ch***@bulgaria.com> wrote in message
news:1119283569.724971.280040@z14g2000cwz.googlegroups.com...
Please excuse my loose expression but I am not IIS & PKI specialist. I
need to establish SSL with root certificate from local CA. To do so, I
need to install the root certificate chain on the server, so the client
certificates can be accepted. I have the der encoded certificates in
*.der files. When I step through the Server Certificate wizard in IIS,
Directory Security the options are:
- Create a new certificate
- Assign an existing certificate
- Import a certificate from a Key Manager backup file

If I choose the second options, the dialog lists the certificates in
the repository. Maybe I can add the certificates from the chain to this
repository?

If I choose the third option, I need to create a Key Manager backup
file. Is this possible? How can I start the Key Manager - I saw plenty
of topics about it, but I don't see an executable with this name. Is
this a separat? program? Or maybe I have to install MS Exchange - I
think it has a feature with that name.

Thaks all of you, I hope you can help me.