Export Digital ID (PKI certificates)

Discussion in 'Security Software' started by Mr. Paris Hilton, Jan 14, 2004.

  1. Has anyone had success exporting/backing up their digital
    IDs in OL2000 or OL2002? I've run the blasted Certificate
    Export Wizard in both MSIE and OL, everytime I get the
    following (typical MS non-descript) error:

    "An error occured while trying to export security info."

    I tried exporting individual certificates, bulk export,
    with SmartCard in reader, without SmartCard reader, etc.
    Always receive the aforementioned error.


    Mr. H
    Mr. Paris Hilton, Jan 14, 2004
  2. Mr. Paris Hilton

    Brian Komar Guest

    What specific certificates are you trying to export? By the sounds of
    it, you are trying to export the certificate on a smart card reader? You
    can export the certificate itself, but you cannot export the private key
    in that scenario.

    Alternatively, try using the Certificates MMC console focused on the
    Current User. You can export the certificates by viewing the
    certificates and then Copying them to file from the Details tab.

    Brian Komar, Jan 14, 2004
  3. Brian:

    Thanks for reply. I gave it a shot through the MMC
    (Current Luser) and got a new error message:

    "The export failed. Invalid type specified."

    I'll back up and explain my objective. I'd like to be
    able to back-up/export my SmartCard (private) certificates
    so I can send/receive encrypted e-mail (via Outlook 2002)
    without having to monkey with the SmartCard and reader. I
    know this sounds like I'm a lazy arse and not too smart
    security-wise, but for my own knowledge, I'd like to know
    if exporting SmartCard certificates can even be done
    (store certs on local workstation or network share
    drive). Maybe just operator-error on my part, or I'm
    approaching this at the wrong angle....? Possibly a W2K-
    Pro service is disabled or restricted.... grabbing at
    straws at this point. Any inputs appreciated, thanks.

    Mr. H
    Mr. Paris Hilton, Jan 14, 2004
  4. AFAIK, most private keys on smart-cards are not exportable from the cards
    for obvious security reasons.
    Also, certs installed into OS CSP must explicitly be marked as exportable
    when generated (or imported) ... otherwise they also will not be available
    for exporting.
    - Mitch Gallant
    Michel Gallant, Jan 14, 2004
