How do I import an existing trusted certificate?
Applies To: Windows SBS 2008
If you purchased a trusted certificate, and it is available to export, you can move the certificate to Windows SBS 2008. To do this, export the certificate from the server that it is currently on, import it to the server that is running Windows SBS 2008, and then run the Add a Trusted Certificate Wizard to connect the certificate to your Web site.
To export a trusted certificate
On the server where the certificate currently is, click Start, click Run, type mmc.exe, and then press ENTER.
On the console, click File, and then click Add/Remove Snap-in.
Click Add, choose Certificates from the list, click Add again, and then click OK.
On the pop-up window, click Computer Account, click Finish, and then click OK.
Expand Certificates, expand Personal, and then click Certificates.
Note
If the certificate that you want to export is not listed, you can search for it. Click Personal, click the Action menu, and then click Find Certificates.
- Right-click the certificate that is issued to your Web site (for example: remote.contoso.com), click All Tasks, and then click Export.
Note
There may be multiple certificates with the same name. Ensure that you choose a certificate that has a valid expiration date and that was issued by the expected trusted authority. If you are not sure which one to choose, open Internet Information Services (IIS), determine which certificate IIS is using, and then choose that certificate.
In the Certificate Export Wizard, click Next.
Ensure Yes, export the private key is selected, and then click Next.
Ensure Include all certificates in the certificate path if possible and Export all extended properties are selected, and then click Next. Do not select Delete the private key if the export is successful.
Type a strong password to protect the certificate file, and then click Next.
To save the .pfx file (for example, C:\trustedcert.pfx), choose a secure location that only the administrator can access, and then click Next.
Finish the wizard.
To import the trusted certificate to Windows Small Business Server 2008
Move the trustedcert.pfx file to the server that is running Windows SBS 2008 by using either the network or a USB device.
On the server that is running Windows SBS 2008, click Start, type mmc.exe, and then press ENTER.
On the console, click File, and then click Add/Remove Snap-in.
Choose Certificates from the list, and then click Add.
On the pop-up window, select Computer Account, click Finish, and then click OK.
Expand Certificates, expand Personal, and then click Certificates.
Right-click Certificates, click All Tasks, and then click Import.
On the Certificate Import Wizard Welcome page, click Next.
Browse to the location of the saved .pfx file, and then click Next.
Type the password that you typed in the Export procedure, ensure that Mark this key as exportable and Include all extended properties are selected, and then click Next.
Ensure that the certificate will be imported to the Personal folder, and then click Next.
Finish the wizard.
To configure Windows SBS 2008 applications to use the imported certificate, run the Add a Trusted Certificate Wizard.
To run the Add a Trusted Certificate Wizard
Open the Windows SBS Console.
On the navigation bar, click the Network tab, and then click Connectivity.
In the task pane, click Add a trusted certificate.
On the Welcome page, read the information, and then click Next.
On the Get the certificate page, click I want to use a certificate that is already installed on the server, and then click Next.
Note
If you have chaining certificates that are associated with the certificate that you just imported, you must import them also.
On the Choose an installed certificate page, click the certificate that you just imported, and then click Next.
When the wizard finishes, click Finish.
If you imported the trusted certificate successfully and still do not see it listed, see Why isn't my certificate listed here?