locked
Exporting user certificate RRS feed

  • Question

  • I have user cert in my current store. I am trying to export it. Though I couldn't use mmc because user is not admin (we don't want to add user as admin). Also, the certificate tab is greyed out on the Tool/Internet/Content/Certificate option. I am trying to use runas command, but it does not work. I receive a "the directory name is invalid"

    Is there anyway I can export this cert?
    Friday, May 30, 2008 3:36 PM

Answers

  • Hi,

     

    Please confirm if the Users group has Read and Read & execute permission to the file mmc.exe, which is stored in %systemroot%\system32\.

     

    Thursday, June 5, 2008 6:50 AM
    Moderator

All replies

  • Hi,

     

    You can export the current user certificate by using the Certificate snap-in even though the user account is not a member of the administrators group.

     

    Here are the steps:

     

    1.    Click Start, type certmgr.msc in the Start Search box, and press Enter.

    2.    In the certificate snap-in, expand Personal and click Certificates. You will see all the current user certificates in the right panel.

     

    Hope it helps.

     

    Monday, June 2, 2008 5:34 AM
    Moderator
  • Joson Zhou

    Unfortunately, users don't have permission to use certmgr.msc and mmc. Users also do not have permission to become local admins or have admin rights.

    How do I fix this?
    Monday, June 2, 2008 2:20 PM
  • Hi,

     

    Please understand that Administrator permission is not required to open the Certificate snap-in (certmgr.msc). To better understand the issue, please capture the error message for me.

     

    I look forward to your response.

     

    Tuesday, June 3, 2008 7:32 AM
    Moderator
  • Joson Zhou:

    This is the error when I tried to use mmc or certmgr.msc using regular user account:

    "windows cannot access the specified device, path, or file. You may not have the appropriate permissions to access the item"

    Can you show me how to access this device without making users as admin?
    I can use the "runas" command to run the certificate.msc; however, I can only get the " current user" which is the admin, not user.

    Thanks
    Tuesday, June 3, 2008 12:59 PM
  • Hi,

     

    Please confirm if the Users group has Read and Read & execute permission to the file mmc.exe, which is stored in %systemroot%\system32\.

     

    Thursday, June 5, 2008 6:50 AM
    Moderator