Skip to main content

Export a PKIaaS CA trust chain

If you want to use your smart credential to perform Microsoft Windows Login, you need to import the CA certificate into the Windows Domain Controller. Use this procedure to export that CA certificate so that you have it available to import into the domain controller.

  1. Log in to your Identity as a Service administrator account.
  2. Click > Resources > Certificate Authorities. The Certificate Authorities List page appears.
  3. Click  next to the certificate to export the certificate trust chain. The Export PKIaaS CA Certificate dialog box appears.
  4. Do one of the following:
    • Click Certificate to export the issuing CA.
    • Click Root CA Certificate to export the root CA.
    • Click Certificate Chain to export both the issuing CA certificate and the root CA.
  5. Click Export.