Before performing this task, you must export the certificate to a file from the Web server on which the certificate was requested and installed, and you must copy the file to the Forefront TMG computer.
To import a certificate to a Forefront TMG computer
-
On the Forefront TMG computer, click Start, click Run, type mmc in the Open text box, and click OK.
-
In the Console1 window, click the File menu and then click Add/Remove Snap-in.
-
In the Add/Remove Snap-in dialog box, click Add.
-
In the Add Standalone Snap-in dialog box, select Certificates and click Add.
-
On the Certificates snap-in page, select Computer account and click Next.
-
On the Select Computer page, select Local computer and click Finish.
-
In the Add Standalone Snap-in dialog box, click Close.
-
In the Add/Remove Snap-in dialog box, click OK.
-
In the console tree, expand the Certificates (Local Computer) node, and right-click Personal.
-
Select All Tasks, and then click Import.
-
On the Welcome to the Certificate Import Wizard page, click Next.
-
On the File to Import page, browse to the file that you previously created when you exported the certificate, and then click Next.
-
On the Password page, type the password for this file, and then click Next.
Important: The Password page provides the option Mark this key as exportable. If you want to prevent exporting of the key from the Forefront TMG computer, do not select this option. -
On the Certificate Store page, verify that Place all certificates in the following store is selected and that Certificate Store is set to Personal (the default settings), and then click Next.
-
On the Completing the Certificate Import Wizard page, click Finish.
-
Verify that the server certificate was properly installed by performing the following steps:
- Click Start, click Run, type mmc in the
Open text box, and click OK.
- In the Console1 window, click the File menu and
then click Add/Remove Snap-in.
- In the Add/Remove Snap-in dialog box, click
Add.
- In the Add Standalone Snap-in dialog box, select
Certificates and click Add.
- On the Certificates snap-in page, select Computer
account and click Next.
- On the Select Computer page, select Local
computer and click Finish.
- In the Add Standalone Snap-in dialog box, click
Close.
- In the Add/Remove Snap-in dialog box, click
OK.
- In the console tree, expand the Certificates (Local
Computer) node, expand Personal, click
Certificates, and double-click the new server certificate.
On the General tab, there should be a note that says You
have a private key that corresponds to this certificate. On the
Certification Path tab, you should see a hierarchical
relationship between your certificate and the certification
authority (CA) and a note that says This certificate is
OK.
- Close the Console1 window.
Note: After you successfully complete this procedure, you can remove the certificate from the Web server on which the certificate was requested and installed. - Click Start, click Run, type mmc in the
Open text box, and click OK.
Related Topics
Copyright © 2009 by Microsoft Corporation. All rights reserved.