11.3.8.5. Procedure – Exporting certificates

To export a certificate from the MS PKI, complete the following steps.

  1. Select the certificate to be exported on the Certificates tab.

    Note

    When only one certificate is exported, the name of the exported certificate file has to be defined during the export. When a number of certificates are exported at once with the help of multiple selection, the exported certificates will be named based on their unique names. If by the export of multiple certificates, private keys are also exported, passwords must also be generated. The passwords of the private keys will be saved in .txt files format into the same directory the certificates are exported to and will be named based on the unique name of the corresponding certificate they belong to.

  2. Click on Export.

  3. Select the directory to save the file(s) to. Specify the filename in case of single certificate export (as in case of exporting multiple certificates, the names are automatically created), and click OK.

    Exporting certificates

    Figure 11.24. Exporting certificates

    Note

    File extension is NOT added automatically to the filename.

    The file will be saved to the local machine, that is, the one that is running MC.

  4. Depending on the file format to be used, the part(s) to be saved can be specified. Naturally, only the parts that are available can be selected (for example, only the CSR or the key if the certificate has not been signed yet).

    Selecting certificate components to export

    Figure 11.25. Selecting certificate components to export

  5. If the private key is exported as well, in case of exporting one certificate, the key can be password-protected by specifying an Export password. In case more than one certificate is exported, and private keys are also selected for export, the passwords belonging to the private keys will be automatically generated into the same folders, where the certificates are exported to and will be saved into .txt files. The .txt files will be named after the unique name of the certificate they belong to.