Administration

Table Of Contents
Procedure
1 If the user certificate is on a smart card, insert the smart card into the reader to add the user
certificate to your personal store.
If the user certificate does not appear in your personal store, use the reader software to export the
user certificate to a file. This file is used in Step 4 of this procedure.
2 In Internet Explorer, select Tools > Internet Options.
3 On the Content tab, click Certificates.
4 On the Personal tab, select the certificate you want to use and click View.
If the user certificate does not appear on the list, click Import to manually import it from a file. After
the certificate is imported, you can select it from the list.
5 On the Certification Path tab, select the certificate at the top of the tree and click View Certificate.
If the user certificate is signed as part of a trust hierarchy, the signing certificate might be signed by
another higher-level certificate. Select the parent certificate (the one that actually signed the user
certificate) as your root certificate. In some cases, the issuer might be an intermediate CA.
6 On the Details tab, click Copy to File.
The Certificate Export Wizard appears.
7 Click Next > Next and type a name and location for the file that you want to export.
8 Click Next to save the file as a root certificate in the specified location.
What to do next
Add the CA certificate to a server truststore file.
Add the CA Certificate to a Server Truststore File
You must add root certificates, intermediate certificates, or both to a server truststore file for all users and
administrators that you trust. View Connection Server instances and security servers use this information
to authenticate smart card users and administrators.
Prerequisites
n
Obtain the root or intermediate certificates that were used to sign the certificates on the smart cards
presented by your users or administrators. See Obtain the Certificate Authority Certificates and
Obtain the CA Certificate from Windows.
Important These certificates can include intermediate certificates if the user's smart card certificate
was issued by an intermediate certificate authority.
n
Verify that the keytool utility is added to the system path on your View Connection Server or security
server host. See the View Installation document for more information.
View Administration
VMware, Inc. 49