解決方法:
原文請參考McAfee Knowledge Center
https://kc.mcafee.com/corporate/index?page=content&id=KB79551&actp=RSS
首先請將證匯入windows server之憑證中心:
- 先將本來您要更新於McAfee emm portal 之憑證存在windows server桌面(其它地方也可以)Double-click 所存的憑證(其副檔名是pfx ) click Next, and then click Next 將出現匯入的安裝精靈。
 - 於輸入密碼處輸入密碼,且將下方兩個選項打勾(注意一定要打勾,不然後續動作會失敗:
打勾~~將此金鑰設定可以匯出(Mark this key as exportable) 打勾~~包含所有延伸內容(Include all extended properties ) - 將匯入金鑰放在「個人」的存放區
 - 完成即可.
 
再來匯出金鑰
- 打開MMC,憑證管理中心,在個人憑證存放區找出剛剛匯入的憑鑰
 - 匯出PFX
 - 勾選第1項及第3項,第2選項「不要勾」
 
再至emm portal 用剛剛匯出的金鑰renew即完成。
以下是原文
Solution
Import the certificate to the Certificate Manager:- Double-click the pfx file. When prompted by the wizard, click Next, and then click Next again on the File to Import screen.
 - On the Password screen, type the password for the private key, and ensure that the following boxes are selected for you to be able to export the certificate again:
- Mark this key as exportable
 - Include all extended properties
 
 - Click Next, and then click Next again on the Certificate Store screen.
 - Click Finish to complete the process. You should see a message stating that the import was successful.
 
View the imported certificate in the Certificate Manager Microsoft Management Console (MMC):- Open the Certificate Manager MMC. You should see the imported certificate in the Console Root\Certificates - Current User\Personal folder.
 - Double-click the certificate you just imported and click the Certification Path tab.
 - Highlight Go Daddy Secure Certification Authority, and click View Certificate. You should see a new certificate appear.
NOTE: This is the Intermediate certificate, which needs to be imported into the Intermediate certificate store. - Go to the Details tab and click Copy to File to open the Certificate Export Wizard.
 - Click Browse and choose a location to save the cer file.
 - Perform the same steps for the Root Certificate from step 3 of this procedure. For example, export the Go Daddy Class 2 Certificate Authority and import it back in to the Trusted Root Certification Authorities folder in the MMC.
NOTE: At this stage, you should see two exported certificates.
 - In the Certificate Manager MMC snap-in, go to Trusted Certificate Authority, and select Import to import the Certificate Authority that you just exported.
 - Use the same export process as described above for the Intermediate certificate. When complete, verify that the certificates you restored are in their correct store.
NOTE: It is important that the certificates are in the correct location. - Right-click the SSL portal certificate and select Export.
 - Follow the steps in the Export Certificate Wizard to export the private key.
 - On the Export File Format screen, ensure that the following options are selected:
- Include all certificates in the certification path if possible
 - Export all extended properties
 
 - When prompted, type your password for the certificate, and click Next.
 - Click Browse to specify the location and the file name that you want to give the certificate.
 - When saved, retrieve the Portal Certificate from the location specified and add it to the Deployment Helper.
 
沒有留言:
張貼留言