Certificate for Smart Card User

Certificate for Smart Card User

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Certificate for Smart Card User Jacek Jurkowski 09-03-2008
Posted by Jacek Jurkowski on September 3, 2008, 5:26 am
If you were  Registered and logged in, you could reply and use other advanced thread options


I installed Microsoft CA on Windows Server 2008,
configured it properly to issue a Certificates for
SmartCard Users. Everything works fine. Im
requesting certificate from my computer using
SmartCardUser certificate and its issued to me by CA
and installed in local store. But how in the name of Lord can i
download that certificate into a smart card? Its
private key isn't exportable so i cannot import it
into my Alladin Token. The only way i figured out
is to create a new CA template based on SmartCardUser,
mark its private key as exportable. Certificate issued
that way works fine and my Alladin can import it but
i think it should be less complicated. Why Windows
(Vista) doesnt allow to save certificate to a token during
enrollment process and stores it automatically in
local store?



--
------------------------------------------
Jacek Jurkowski - Datacomp

Posted by Paul Adare - MVP on September 3, 2008, 6:53 am
If you were  Registered and logged in, you could reply and use other advanced thread options


On Wed, 3 Sep 2008 11:26:11 +0200, Jacek Jurkowski wrote:

> I installed Microsoft CA on Windows Server 2008,
> configured it properly to issue a Certificates for
> SmartCard Users. Everything works fine. Im
> requesting certificate from my computer using
> SmartCardUser certificate and its issued to me by CA
> and installed in local store. But how in the name of Lord can i
> download that certificate into a smart card? Its
> private key isn't exportable so i cannot import it
> into my Alladin Token. The only way i figured out
> is to create a new CA template based on SmartCardUser,
> mark its private key as exportable. Certificate issued
> that way works fine and my Alladin can import it but
> i think it should be less complicated. Why Windows
> (Vista) doesnt allow to save certificate to a token during
> enrollment process and stores it automatically in
> local store?

You need to configure the template to use the CSP provided by Alladin.
--
Paul Adare
MVP - Identity Lifecycle Manager
http://www.identit.ca
Every program in development at MIT expands until it can read mail.

Similar ThreadsPosted
PKI User Certificate on Smart Card auto renewal ? August 29, 2007, 11:22 am
Smart Card Login + Certificate Login to AD -> Lost smart card December 15, 2005, 10:03 pm
Smart Card Login + Certificate Login to AD -> Lost smart card December 15, 2005, 10:41 pm
Q: Seconary certificate on a smart card August 5, 2006, 6:24 am
Smart card certificate validity period November 21, 2005, 8:10 am
Smart Card based Logon & User ID and Password June 17, 2005, 10:09 am
Smart Card Logon July 20, 2006, 2:39 am
Smart Card - two readers December 8, 2006, 8:16 am
Look at the contents of a smart card? April 24, 2007, 12:04 pm
CRL caching and smart card logon November 28, 2005, 3:08 pm

The site map in XML format XML site map

Contact Us | Privacy Policy