Client Certificates

From: RG (nobody_at_nowhere.com)
Date: 01/25/04


Date: Sun, 25 Jan 2004 09:41:19 -0500

Pardon my ignorance in the area of Certifiate Services. In the questions I
may have made incorrect statements. I would greately appreciate if you
could correct me.

I am generating client certificates using win2k3 Certificate Services.
After creating the certificate, I export it using public/private key pair
into .pfx. file. I then import it to client machine personal store. In the
personal node there are now 2 certificates. I am assuming it is a public
client certificate and public CA certificate.

Where does the private key get stored?

If it is stored in some hidden place, how can I check what private keys have
been imported to date? How can I delete them?

Is the private key the same for all certificate for that CA? or is there
different private key for each certificate for that CA?

Thanks in advance



Relevant Pages

  • RE: SIMple SSL question ??
    ... I believe your book is instructing you to keep the private key secure. ... you use the certificate request wizard in IIS to install the cert after it's ... the certificate that's just been installed. ... If an attacker retrievs the SSL certificate, ...
    (microsoft.public.dotnet.security)
  • RE: SIMple SSL question ??
    ... I believe your book is instructing you to keep the private key secure. ... you use the certificate request wizard in IIS to install the cert after it's ... the certificate that's just been installed. ... If an attacker retrievs the SSL certificate, ...
    (microsoft.public.dotnet.security)
  • Re: Certificates, Keys, Mobile Users, Intended Usage
    ... Option that you think about uses self signed EFS certificates. ... Better then exporting user's private key as backup is to setup DRA (Data ... there is no EFS certificate and it will generate a new one. ... Mobile computer users benefit from encrypting sensitive ...
    (microsoft.public.win2000.security)
  • Re: PFXExportCertStoreEx
    ... which contains the actual PFX and write that to the disk. ... methods to export certificate + private key from the IE store. ...
    (microsoft.public.platformsdk.security)
  • Re: How to programmatically retrieve certificate from system key store
    ... You can do this using P/Invoke and capi functions, or even simpler, ... > requires you to add the required certificate to the ClientCertificates ... > Because a certificate doesn't actually contain a private key, ... > installed in the system key store, ...
    (microsoft.public.dotnet.security)