Export and Import a Self-Signed Certificate for Disconnected Devices
book
Article ID: 286619
calendar_today
Updated On:
Products
Carbon Black App Control (formerly Cb Protection)
Issue/Introduction
To export, and import a self signed agent communication certificate.
Environment
- App Control Agent: All Supported Versions
- App Control Server: All Supported Versions
- Microsoft Windows: All Supported Versions
Resolution
Exporting from the App Control Server:
Note: If using a certificate generated from an internal CA, there is no need to export it from the server.
- Log in to the application server hosting the App Control Server as the Carbon Black Service Account.
- Click Start > Run > certlm.msc > OK.
- In the left-hand pane expand: Trusted People > Certificates.
- Right click the relevant Certificate in the right-hand pane and choose: All Tasks > Export.
- Do not export the Private Key, and save as a .CER file.
Importing the certificate on the endpoint:
- Transfer the certificate to the device > right click > Install Certificate.
- Local Machine > Next > Place all certificates in the following store > Browse.
- Trusted People > Ok > Next > Finish.
Additional Information
Importing of the certificate can also be pushed through Group Policy, by applying it to the Trusted Root Certification Authority
Feedback
thumb_up
Yes
thumb_down
No