Generate/Export PKCS #12 certificate from Win2k3 CA

From: Stuart Mackie [MCP, MSP] (newsgroups_at_--REMOVE_THIS-NO_SPAM--stu.uk.com)
Date: 01/08/05


Date: Sat, 8 Jan 2005 19:50:26 -0000

Hi. I am using a 3rd party VPN client which requires a PKCS #12 certificate
(*.p12) for use with RSA-Cert VPN connections. So far I have generated a
certificate on our Win2k3 CA using the User Certificate Template, enabled
'Mark keys as exportable' and enabled strong private key protection. The
request format is set for CMC and the Hash is SHA-1.

Following this I can export two files, one is the .cer and the other is .pvk
(private key). The format required for the VPN client (from what I've been
informed so far) is PKCS #12 which would be .p12. I haven't managed to find
much documentation online which explains the different file types, since I
thought the .cer included PKCS #12.

Is it possible to export the required .p12 certificate from a Win2k3 CA ?

Thanks for any help,
Stuart.



Relevant Pages

  • Generate/Export PKCS #12 certificate from Win2k3 CA
    ... I am using a 3rd party VPN client which requires a PKCS #12 certificate ... certificate on our Win2k3 CA using the User Certificate Template, ... 'Mark keys as exportable' and enabled strong private key protection. ... The format required for the VPN client (from what I've been ...
    (microsoft.public.windows.server.security)
  • Re: MakeCert question
    ... makecert.exe "-pe" option allowing the private key export... ... >> Is there a way, when using MakeCert to create a test certificate, to ... >> this certificate exportable with its private key as a PKCS #12 file? ... Without this OID you will not be able to ...
    (microsoft.public.win2000.security)
  • Re: no option to export Certificate private key
    ... > I am new learning how to setup MS Certificate for Cisco VPN client. ... > VPN clients are able to request for a new certiicate from MS Certificate ... > the certificate but I am unable to export the user's private key. ...
    (microsoft.public.win2000.security)
  • no option to export Certificate private key
    ... I am new learning how to setup MS Certificate for Cisco VPN client. ... Certificate runs on Windows 2000 AD with 1 way trust with NT 4 domain. ... the certificate but I am unable to export the user's private key. ...
    (microsoft.public.win2000.security)
  • Re: MakeCert question
    ... > Is there a way, when using MakeCert to create a test certificate, to make ... > this certificate exportable with its private key as a PKCS #12 file? ... Without this OID you will not be able to ...
    (microsoft.public.win2000.security)