03-23-2011 07:43 PM - edited 03-10-2019 05:56 PM
Hi All ,
I am trying to export SSL certficate from window 2000 server which is running Cisco ACS 3.3 . This SSL certificate is issued by third party CA . This certficate has issued by CA binded to hostname of our server . Thereby this certficate cannot be reused on another server with different hostname .
I have followed below setup to export the certificate from window 2000 box
[1] Start > Run > Type 'mmc' and hit enter.
[2] Click on Console > Add/Remove Snap-in...
[3] Click on Add > Certificate > Add > Computer Account > Next > Local Computer > Finish > Close > Ok
[4] Expand Certificates > Expand Trusted Root Certificate Authority and select Certificates
[5] Choose the ACS CA certificate, right click > All Tasks > Export > Next > Select 'Base-64 encoded X.509 (.CER)' > Next > Browse
Choose the location to store, and give it a name.
Press Next > Finish
We should get a message 'export was successful'
After exporting the certificate from the folder TRUSTED ROOT CERTIFICATE AUTHORITY based on vendor name . I could see the certifcates are self signed certificates . This certificate is not valid trusted certificate as its issued by CA .
My Question is : whether this trusted certifcate issued by 3 party vendor will be located in some other folder apart from folder TRUSTED ROOT certifcate folder . if its so on which folder this trusted certifcate will be located .
I am checking the certficates by
issued by :
issued to :
in self signed certifcate both issued to and issued by is same
ATTACHING SNAP SHOT of MMC certifcate window .
Solved! Go to Solution.
03-23-2011 10:40 PM
Hi,
ACSCertStore is a certificate folder formed in the MMC - certificate folder of the server .
Hope this helps.
Regards,
Anisha.
P.S.: please mark this post as answered if you feel your query is resolved. Do rate helpful posts.
03-23-2011 08:42 PM
Hi,
the screenshot attached is for user account certificates.
you need to extract the cert from the computer account.
the TRUSTED ROOT CERTIFICATE AUTHORITY will store the root CA
.
you can find the ACS cert on the ACSCertStore of the server where the ACS is installed.
Hope this helps.
Regards,
Anisha.
P.S.: please mark this post as answered if you feel your query is resolved. Do rate helpful posts.
03-23-2011 08:53 PM
03-23-2011 09:04 PM
Hi,
i don't think you ACS is installed on the machine whose screenshot you are attaching.
It will show up in the MMC of the server, certificates on local computer.
how are you accessing the ACS with 127.0.0.1:2002 on the machine or ip address of the server?
can you try http://127.0.0.1:2002 and let me know if the ACS page opens up.
Regards,
Anisha
-Do rate helpful posts
03-23-2011 09:25 PM
Hi Anisha ,
Thanx for posting . Sorry snap shot is posted from enduser machine an XP machine which does not run ACS application on it . i will try to perform the same action from the windows 2000 server machine and post you the snap shot . our ACS 3.3 is can being accessed locally & remotely .
My Question over here : AcsCertStore certificate folder is a separate folder on MMC certificate dialog window or its found inside some other folder . kindly clarify me on this
attaching snap shot of acs from being locally accessed
03-23-2011 10:40 PM
Hi,
ACSCertStore is a certificate folder formed in the MMC - certificate folder of the server .
Hope this helps.
Regards,
Anisha.
P.S.: please mark this post as answered if you feel your query is resolved. Do rate helpful posts.
03-23-2011 10:54 PM
Hi Ani ,
Thanx for your postings , I will check and let you if i find any diffuclties ,while exporting the certificates from windows 2000 server.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide