Red Hat Enterprise Linux 7. Security Guide. A Guide to Securing Red Hat Enterprise Linux 7. Last Updated: 2019-07-15 Red Hat Enterprise Linux 7 Security Guide A Guide to Securing Red Hat Enterprise Linux 7. Mirek Jahoda Red Hat Customer Content Services [email protected] Stephen Wadeley Red Hat Customer Content Services. Robert Krátký Red Hat Customer Content Services The private key should be stored in the MyCA.pvk file, and the certificate in the MyCA.cer file. Importing the CA certificate. Because there's no point in having a CA certificate if you don't trust it, you'll need to import it into the Windows certificate store. You can use the Certificates MMC snapin, but from the command line: certutil -user -addstore Root MyCA.cer Creating a code-signing ... RootCATest.pvk is the private key of the root CA certificate. RootCATest.cer is the public key of the root CA certificate (used for issuing certificates). When I view it from the MMC and right click on it, properties -> export, then its private key export option is grayed out. How to create a Private-Key exportable self-signed certificate? If you have a CA (private) key, which is the same as the one for the CSR you sign, then you create a self-signed certificate. If instead you create separate keys for the entity whose identity you wish to confirm and the CA used to confirm the identity, it's formally not a self-signed certificate anymore. Self-signed certificates are mostly used for testing purposes and thus temporary.

