Knowledge Base

PositiveSSL Certificate Installation: Microsoft IIS Root and Intermediate Certificate installation

Installing the Root & Intermediate Certificates


For a positive ssl certificate, in addition to your domain certificate you will be receiving 3 more files.
These files must be imported in the following order:

  • Root AddTrustExternalCARoot.crt
  • Intermediate CA UTNAddTrustServerCA.crt
  • Intermediate CA PositiveSSLCA.crt

Or click to download the root and Intermediate files
 

  • Save these Certificates to the desktop of the webserver machine, then:
  • Click the Start Button
  • select Run
  • type mmc
  • Click OK

User-added image
 

  • Click File
  • Select Add/Remove Snap in

User-added image
 

  • Select Add

User-added image
 

  • Select Certificates from the Add Standalone Snap-in box and click Add

User-added image
 

  • Select Computer Account (NOTE: This step is very important. It must be the computer account and no other account) and click Next

User-added image
 

  • Select Local Computer and select Finish

User-added image
 

  • Close the Add Standalone Snap-in box, click OK in the Add/Remove Snap in
  • Return to the MMC
  • To install the your Root Certificate:

      User-added image
 

  • Right click the Trusted Root Certification Authorities
  • Select All Tasks
  • Select Import.

      User-added image
 

  • Click Next.

      User-added image
 

  • Locate the Root Certificate AddTrustExternalCARoot.crt
  • click Next.
  • When the wizard is completed
  • click Finish.


To install the Intermediate Certificate/Certificates:
     User-added image
 

  • Right click the Intermediate Certification Authorities
  • select All Tasks
  • select Import
  • Complete the import wizard again, but this time locating the intermediate Certificate UTNAddTrustServerCA.crt when prompted for the Certificate file.


Once you have installed the UTNAddTrustServerCA.crt repeat the above process to install the PositiveSSLCA.crt

  • Ensure that the Root certificate(AddTrustExternalCARoot.crt) appears under Trusted Root Certification Authorities
  • Ensure that the intermediate certificates(UTNAddTrustServerCA.crt and PositiveSSLCA.crt) appears under Intermediate Certification Authorities
  • Once these are installed you may need to restart the server.

Need assistance?

Contact our team for help with your purchase or issuing your certificate.

Live chat

Call us today