Skip to content

TechDirectArchive

Hands-on IT, Cloud, Security & DevOps Insights

  • Home
  • About
  • Advertise With US
  • Contact
  • Reviews
  • Toggle search form
Home » Windows Server » Import certificates into Trusted Root and Personal certificate store
  • Credential Sync acrosss devices
    How to sync your passwords across iOS and Mac devices Mac
  • Domain
    Connectivity to a writable domain controller from a node could not be determined because of an error Virtualization
  • Featured Image new
    Add Registry Keys via DISM in Windows Windows
  • dfggg 1
    Configuring SimpleSAMLPHP Windows Server
  • prettier boot image
    How to stop Cisco Webex Meetings from starting up automatically on macOS Mac
  • dropbox
    Couldn’t start Dropbox: How to fix and reinstall Dropbox Mac
  • remove Windows PC from you iCloud Account completely
    How to remove Windows PC from your iCloud Account completely Mac
  • SA
    How to Create Service Accounts, Organisation Units and Active Directory Security Groups Windows Server

Import certificates into Trusted Root and Personal certificate store

Posted on 09/04/202011/03/2025 Christian By Christian No Comments on Import certificates into Trusted Root and Personal certificate store

Trusted Root Certification Authorities certificate store is configured with a set of public CAs that have met the requirements of the Microsoft Root Certificate Program. Administrators can configure the default set of trusted CAs and install their own private CA for verifying software. In this article, I will show you how to Import certificates into Trusted Root and Personal certificate store. Please see how to Change your root password: How to enable and disable the root user on your macOS. How to add languages to your Personal PC,

On how to create a certificate signing request, see the guide “create a certificate signing request using the MMC”. Be aware that all current user certificate stores except the Current User/Personal store inherit the contents of the local machine certificate stores.

For example, if a certificate is added to the local machine Trusted Root Certification Authorities certificate store. All current user Trusted Root Certification Authorities certificate stores (with the above caveat) also contain the certificate.  

Also, see how to Generate a self-signed SSL certificate: How to enable LDAP over SSL with a self-signed certificate. And how to fix there was an error opening the Trusted Platform Module snap-in: You do not have permission to open the Trusted Platform Module Console.

What is a Trusted Root CA store?

In a nutshell, the Trusted Root CA store is for root CA certificates you want to trust. You rarely want to put certificates here due to its security implementation and the Personal store is for certificates you want to trust. You will put your certificate here.

Note: This can also be done via the command line. For what a PEM file is, see this link. On Windows, this can be achieved with the following steps below without using a 3rd party tool and there are different ways to accomplish this.

Please see the following interesting related how-to articles on how to import a certificate into the Trusted Root and Personal file certificate store, and how to export a certificate in PFX format in Windows. You may also be interested in this guide: How to install and configure Active Directory Certificate Services.

Import Certificates

Ensure the certificate that you would like to convert is first imported to the certificate store. In this way, you can export and save it in the desired format.

On the Welcome to Certificate Import Wizard, Click on Next as shown below.

Browse to the file you would like to import and click on Next

Note: Remember to select the wildcard file type, or else this might not work. Place the certificate in the Personal certificate store.

Complete the Certificate Import Wizard as shown below

If successfully imported, you will get a certificate Import Wizard Success.

Additional piece if you are interested

The certificate store is central to all certificate functionality. The certificates are managed in the store using functions with a "Cert" prefix. Certificates, CRLs, and CTLs can be kept and maintained in certificate stores. They can be retrieved from a store where they have been persisted for use in authentication processes.

Certificates in a certificate store are normally kept in some kind of permanent storage such as a disk file or the system registry. 

Certificate stores can also be created and opened strictly in memory. A memory store provides temporary certificate storage for working with certificates that do not need to be kept.

I hope you found this blog post helpful on how to Import certificates into Trusted Root and Personal certificate store. If you have any questions, please let me know in the comment session.

5/5 - (1 vote)

Thank you for reading this post. Kindly share it with others.

  • Click to share on X (Opens in new window) X
  • Click to share on Reddit (Opens in new window) Reddit
  • Click to share on LinkedIn (Opens in new window) LinkedIn
  • Click to share on Facebook (Opens in new window) Facebook
  • Click to share on Pinterest (Opens in new window) Pinterest
  • Click to share on Tumblr (Opens in new window) Tumblr
  • Click to share on Telegram (Opens in new window) Telegram
  • Click to share on WhatsApp (Opens in new window) WhatsApp
  • Click to share on Pocket (Opens in new window) Pocket
  • Click to share on Mastodon (Opens in new window) Mastodon
  • Click to share on Bluesky (Opens in new window) Bluesky
  • Click to share on Threads (Opens in new window) Threads
  • Click to share on Nextdoor (Opens in new window) Nextdoor
Windows Server Tags:Active Directory Certificate Services, Cert, Certificate Authority, Certificate Signing Request, Certificates, Microsoft Windows, Windows 10, Windows Server 2016

Post navigation

Previous Post: Request a certificate signing request in Windows using Microsoft Management Console
Next Post: How to export a certificate in PFX format in Windows

Related Posts

  • unnamed 1
    NSlookup Displays Error: UnKnown Default Server Windows Server
  • ftpwindows
    How to install and configure an FTP server on Windows 10 Windows Server
  • How to Install Winget on Windows Server
    How to Install Winget on Windows Server Windows Server
  • RDlicensePerUser
    RDS client access licenses: How to install a new Per User Remote Desktop Services license Windows Server
  • Disable and Enable USB in Windows
    Disable and Enable USB Usage for Certain Users in Windows Windows
  • File Share in Windows
    Create Folders and Enable File sharing on Windows Windows Server

More Related Articles

unnamed 1 NSlookup Displays Error: UnKnown Default Server Windows Server
ftpwindows How to install and configure an FTP server on Windows 10 Windows Server
How to Install Winget on Windows Server How to Install Winget on Windows Server Windows Server
RDlicensePerUser RDS client access licenses: How to install a new Per User Remote Desktop Services license Windows Server
Disable and Enable USB in Windows Disable and Enable USB Usage for Certain Users in Windows Windows
File Share in Windows Create Folders and Enable File sharing on Windows Windows Server

Leave a Reply Cancel reply

You must be logged in to post a comment.

Microsoft MVP

VEEAMLEGEND

vexpert-badge-stars-5

Virtual Background

GoogleNews

Categories

veeaam100

sysadmin top30a

  • Credential Sync acrosss devices
    How to sync your passwords across iOS and Mac devices Mac
  • Domain
    Connectivity to a writable domain controller from a node could not be determined because of an error Virtualization
  • Featured Image new
    Add Registry Keys via DISM in Windows Windows
  • dfggg 1
    Configuring SimpleSAMLPHP Windows Server
  • prettier boot image
    How to stop Cisco Webex Meetings from starting up automatically on macOS Mac
  • dropbox
    Couldn’t start Dropbox: How to fix and reinstall Dropbox Mac
  • remove Windows PC from you iCloud Account completely
    How to remove Windows PC from your iCloud Account completely Mac
  • SA
    How to Create Service Accounts, Organisation Units and Active Directory Security Groups Windows Server

Subscribe to Blog via Email

Enter your email address to subscribe to this blog and receive notifications of new posts by email.

Join 1,839 other subscribers
  • RSS - Posts
  • RSS - Comments
  • About
  • Authors
  • Write for us
  • Advertise with us
  • General Terms and Conditions
  • Privacy policy
  • Feedly
  • Telegram
  • Youtube
  • Facebook
  • Instagram
  • LinkedIn
  • Tumblr
  • Pinterest
  • Twitter
  • mastodon

Tags

AWS Azure Bitlocker Microsoft Windows PowerShell WDS Windows 10 Windows 11 Windows Deployment Services Windows Server 2016

Copyright © 2025 TechDirectArchive

 

Loading Comments...
 

You must be logged in to post a comment.