A CA certificate (or a Certificate Authority certificate) is a special type of certificate that is used to make...
a device trust a particular certificate authority. If a device has a certificate installed, then the device will trust any certificates that have been issued by the certificate authority.
In many cases the installation of a CA certificate is unnecessary. Most operating systems already have a number of CA certificates installed by default. These default CA certificates are tied to well-known commercial certificate authorities such as GoDaddy or VeriSign. Therefore, it is only necessary to install a CA certificate if a device needs to trust a lesser known or a home grown certificate authority.
There isn't really a standard procedure for downloading and installing a CA certificate. The method that must be used depends on a number of factors such as the type of server that is being used as a certificate authority, the way that the certificate authority is configured, and the operating system being used on the device on which you want to install the CA certificate.
Windows servers that are configured to act as a certificate authority are commonly configured in a way that allows an administrator to generate and download certificates using a Web interface. The URL for this Web interface is usually https://<the server's FQDN>/CertSRV. There is an option within the Web interface to download a CA certificate.
If the CA certificate is being installed onto a Windows PC, the certificate is installed through the Certificates console. On a Windows 8 PC, you can access the certificate store for the local machine by entering CertLM.msc at the Run prompt. The CA certificate is usually installed into the Trusted Root Certification Authorities of the Third Party Root Certification Authorities container.
You can usually install a CA certificate onto a mobile device by emailing the certificate to someone who has an email account set up on the device. The certificate can be opened as an attachment and will be installed onto the device.
Dig Deeper on Microsoft identity and access management
Related Q&A from Brien Posey
The reasons for going hyper-converged vary. Often, however, organizations deploy HCI technology to effectively address one or more of the five issues... Continue Reading
Adhering to service-level agreements, keeping up with performance demands and planning for future workloads are just a few of the goals you should ... Continue Reading
Is hyper-convergence a good fit for disaster recovery? More organizations appear to believe so and are increasingly using hyper-converged ... Continue Reading
Have a question for an expert?
Please add a title for your question
Get answers from a TechTarget expert on whatever's puzzling you.