Manage Trusted Root…
 
Notifications
Clear all

Manage Trusted Root Certificates in Windows

1 Posts
1 Users
0 Reactions
162 Views
(@cipher5)
Posts: 152
Member Admin
Topic starter
 

[URL] https://www.thewindowsclub.com/manage-trusted-root-certificates-windows [/URL]

[COLOR=#000000][FONT=&quot]In one of our earlier posts, we have seen what [B][URL=”https://www.thewindowsclub.com/what-are-root-certificates-windows”]Root Certificates[/URL][/B] are. There may be times, when some companies or users may feel the need to manage and configure Trusted Root Certificates, to prevent other users in the domain from configuring their own set. In this post, we will see how to manage Trusted Root Certificates & add certificates to the Trusted Root Certification Authorities store in Windows 10/8.1.[/FONT][/COLOR][h=2]Manage Trusted Root Certificates in Windows[/h][COLOR=#000000][FONT=&quot]To [B]add certificates to the Trusted Root Certification Authorities[/B] store for a [B]local computer[/B], from the WinX Menu in Windows 10/8.1, open Run box, type [I]mmc [/I]and hit Enter to open the Microsoft Management Control.[/FONT][/COLOR][COLOR=#000000][FONT=&quot]Press the File menu link and select Add/Remove Snap-in. Now under Available snap-ins, click [B]Certificates[/B], and then click Add.[/FONT][/COLOR][COLOR=#000000][FONT=&quot][URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/1-Manage-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
Click OK. In the next dialog box, select [I]Computer account[/I] and then on Next.
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/2-Manage-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
Now select [I]Local computer[/I] and click on Finish.
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/3-Manage-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
Now, back in MMC, in the console tree, double-click on [I]Certificates[/I] and then right-click on [I]Trusted Root Certification Authorities Store[/I]. Under [I]All tasks[/I], select [I]Import[/I].
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/4-Manage-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
The Certificate Import Wizard will open.
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/5-Manage-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
Follow the instructions in the wizard to complete the process.[/FONT][/COLOR][CENTER][COLOR=#000000][FONT=&quot][/FONT][/COLOR][/CENTER]
[COLOR=#000000][FONT=&quot]Now let us see how to configure and [B]manage trusted root certificates[/B] for a [B]local computer[/B]. Open MMC and press the File menu link and select Add/Remove Snap-in. Now under Available snap-ins, click [B]Group Policy Object Editor[/B], and then click Add. Select the computer whose local GPO you want to edit, and click Finish / OK.
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/6-Add-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL]
Now, back in the MMC console tree, navigate to Local Computer Policy > Computer Configuration > Windows Settings > Security Settings. Next [I]Public Key Policies[/I]. Double-click Certificate Path Validation Settings, and then select the Stores tab.[/FONT][/COLOR][COLOR=#000000][FONT=&quot]Here, select the [I]Define these policy settings[/I], [I]Allow user trusted root CAs to be used to validate certificates[/I] and [I]Allow users to trust peer trust certificates[/I] checkboxes.
[URL=”https://thewindowsclub-thewindowsclubco.netdna-ssl.com/wp-content/uploads/2015/04/7-Add-Trusted-Root-Certificates.jpg”][IMG] [/IMG][/URL][/FONT][/COLOR][COLOR=#000000][FONT=&quot]Finally under Stores tab > Root certificate stores, select one option under [I]Root CAs that the client computers can trust[/I] and click OK. If in doubt, go with the recommended option.[/FONT][/COLOR]

 
Posted : 20/05/2019 4:24 pm
Share: