Help Center

My Tickets
Welcome
Login  Sign up

Cert Error Manual Installation

You use this method if N-Central is not letting you push the update and shows "Failed' or "Completed with error"

 

 

  1. 1. Go to \\rb-deploy1\deployment$

  2. Network rb-deployl Name Certi Cert2 Cert3 Cert4 Cert5 deploymentS Softwa re Fortinet Updated Date modified 11/8/2021 PM 11/8/2021 PM 11/8/2021 PM 11/8/2021 PM 11/8/2021 4:10 PM 11/8/2021 4:42 PM 4/4/2022 6:58 PM 11/9/2021 8:33 AM 6/11/2022 11:48 AM Type Security Certificate Security Certificate Security Certificate Security Certificate Security Certificate PNG File Security Certificate Text Document Security Certificate p Search Updated Size 10 G Tickets Martinez Ninters Fortinet CA SSL mac commands New HQCet
  • - Navigate to the path shown in the SS above

 

  1. 2. File transfer the highlighted file "New_HQ Cert" to the user via N-Central

  • Network Devices MO bile Devices SaaS Devices ADD EDIT ADD SERVICES Remote Control APPLY SERVICE TEMPLATES MOVE DEVICES UPDATE MONITORING SOFTWARE CREATE NEW ALTER ADD NOTE Status ADD TASK ASSIGN PROBE CUSTOM PROPERTIES EXPO RT or reitsma ALTER Filter by No Filter in all Sites Site Remote RESET ALTER Tools SEARCH Name RMLX-JRElTSMA2 Network Address 172.16.10.87 La File Transfer Push Third Party' Softuvare Run a Mac Script Run a Script Run an Automation Policy Security Manager Scan Maintenance Patch Management 30.46 Logged in User TITAN\juIia.reitsma

 

  1. 4. Remote into the user's device and save the file to somewhere accessible (Desktop, Documents, etc.)

  • - IF THE USER IS REMOTE, SKIP TO THE BOTTOM OF THIS DOCUMENT AND FOLLOW "REMOTE USER STEP" AFTER THIS STEP

 

  1. 5. In the windows search bar type "Cert" and select Manage Computer Certificates

 

  1. 6. Expand Trusted Root Certificate

  • - Click on Certificates

  1. Certificates - Local Computer personal Trusted Root Certification Au Certifi cates Enterpr All Tasks I nterme Trusted Untrust Third-Pi Trusted Client A Export List— Help Issu«i To AAA Certificate Services Ad dTrust External CA Root Import— ass 3 Public Primary Certific MODO RSA Certification pyright (c) 1997 Microsoft giCert Assured ID Root CA giCert Global Root CA giCert Global Root G2
  • - Right Click Certificates, All Tasks, click Import

  • - Click Next, then browse for the certificate, and follow the prompts

  1. G]Class 3 Public Primary Certificati— Q COMODO RSA Certification Aut— G] Copyright (c) 1997 Microsoft Corp DigiCert Assured ID Root CA DigiCert Global Root CA Digjcert Global Root G2 DigiCert High Assurance EV Roo— DigiCert Trusted Root G4 G] Digital Guardian, Inc 4 DST Root CA X3 Entrust Root Certification Autho— Entrust Root Certification Autho— Entrust.net Certification AuthoriL 4]FG4HIES819901206 • FG6HIETB21904S30 Class 3 Public Primary Certi COMODO RSA Certificatio Copyright (c) 1997 Micro DigiCert Assured ID Root DigiCert Global Root CA DigiCert Global Root G2 DigiCert High Assurance DigiCert Trusted Root G4 Digital Guardian, Inc DST Root CA Entrust Root Certification Entrust Root Certification Entrust.net Certification FG4HIES819901206 FG6HIETB21904530 FGT61FTK19CD306S FGT61FTK19CD3445 Certificate General Show: Cerificabon Padl Senal number Signanre algont-lm Signanre hash aqorihm Valid from Valid to 3a9tb8946Lt77339 sha256RSA sha256 sw.por@fomet.com, Monday, 6, 2022 str,day, 6, 2032 GHIE.„
  • - Click on the cert FG6H1ETB21904530

  • - If the Serial number shows that it ends in 339 then you're good to go, reboot device and everything should be fixed

 

 

Remote User Step 

  • - After step 4, if the user is remote and they are on VPN, double click the cert and follow the screenshot below 

  • Certificate General Details Certficabon Path Certificate Info rmation This certificate is intended for the following purpose(s): • All issuance policies • All application policies Issued to: FG6HIETE21904530 Issued by: FG6HIETE21904530 Valid from 6/6/2022 to 6/6/2032 Certificate mport Wizard Welcome to the Certificate Import Wizard This wizard helps pu cop,' certificates, certficate trust lists, and certficate revocation lists from your disk to a certificate store. A certificate, which is issued by a certfcaton authority, is a confrmaton of pur identty and contains informaton used to protect data or to establish secure netA'ork connectons. A certificate store is the system area where certificates are kept. Store Location C) Current user @L Ocal Machine To continue, dick Next. Next Cancel
  • - After you click Install Certificate, Select LOCAL MACHINE and then hit Next

  • - After this, if they are on VPN, use your admin credentials and login

  • - Then clear cache on browsers and restart device

  • - If it doesn't work this way and you can't see the FG6H cert, follow the even more manual step below

 

IF THE ABOVE DOESN'T WORK FOR REMOTE USERS, DROP IN THE FILE IN THE THIRD PARTY FOLDER MANUALLY, FOLLOW THE STEPS BELOW

 

  1. Certificate Import Wizard C«tifiGte Certficate stores are system areas where certficates are kept. Windows can automabcally select a certficate store, or you can specify a location for the certficate. C) Automabcally select the certficate store based on the type of certficate @zlace all certificates in the following store Cert ficate store: Next Cancel
  • - Use the other option that isn't Auto

  • - Click Browse

  1. Select Certificate Store Select the certficate store you want to use. Trusted Root Certifcaton Authoribes Registry Third-party Group Policy En terprise Z] Shon physical stores ficates are kept. store, or you can specify a location for based on the type of certficate Browse...
  • - Check "Show physical stores"

  • - Go to Third party and drop the cert there

  • - After successful import, restart device
     

Place in all the locations below if it doesn't stick after reboot

 

HQ Cert:

 

Current User > Place all certs in the following store > Show Physical Stores > Trusted Root > Registry

 

Local Machine > Place all certs in the following store > Show Physical Stores > Trusted Root > Registry

 

Local Machine > Place all certs in the following store > Show Physical Stores > Trusted Root > Third-Party

 

 

V
Vaughn is the author of this solution article.

Did you find it helpful? Yes No

Send feedback
Sorry we couldn't be helpful. Help us improve this article with your feedback.