Jump to content

Certificate for Smart Card User


Recommended Posts

Guest Jacek Jurkowski
Posted

I installed Microsoft CA on Windows Server 2008,

configured it properly to issue a Certificates for

SmartCard Users. Everything works fine. Im

requesting certificate from my computer using

SmartCardUser certificate and its issued to me by CA

and installed in local store. But how in the name of Lord can i

download that certificate into a smart card? Its

private key isn't exportable so i cannot import it

into my Alladin Token. The only way i figured out

is to create a new CA template based on SmartCardUser,

mark its private key as exportable. Certificate issued

that way works fine and my Alladin can import it but

i think it should be less complicated. Why Windows

(Vista) doesnt allow to save certificate to a token during

enrollment process and stores it automatically in

local store?

 

 

 

--

------------------------------------------

Jacek Jurkowski - Datacomp

  • Replies 1
  • Created
  • Last Reply

Popular Days

Guest Paul Adare - MVP
Posted

On Wed, 3 Sep 2008 11:26:11 +0200, Jacek Jurkowski wrote:

<span style="color:blue">

> I installed Microsoft CA on Windows Server 2008,

> configured it properly to issue a Certificates for

> SmartCard Users. Everything works fine. Im

> requesting certificate from my computer using

> SmartCardUser certificate and its issued to me by CA

> and installed in local store. But how in the name of Lord can i

> download that certificate into a smart card? Its

> private key isn't exportable so i cannot import it

> into my Alladin Token. The only way i figured out

> is to create a new CA template based on SmartCardUser,

> mark its private key as exportable. Certificate issued

> that way works fine and my Alladin can import it but

> i think it should be less complicated. Why Windows

> (Vista) doesnt allow to save certificate to a token during

> enrollment process and stores it automatically in

> local store?</span>

 

You need to configure the template to use the CSP provided by Alladin.

--

Paul Adare

MVP - Identity Lifecycle Manager

http://www.identit.ca

Every program in development at MIT expands until it can read mail.

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.


×
×
  • Create New...