picture of tbs certificates
picture of tbs certificates
Our products range

Install the new UserTrust intermediate certificate manually on Windows

Following the expiration of the USERTrust RSA Certification Authority intermediate certificate (more information here), a new intermediate certificate, with the same CN, is available. On this page, we will see how to manually install this new intermediate certificate in the Microsoft Windows MMC

Add the Certificates component in the MMC

First we will add the "Certificates" snap-in to the Microsoft Windows MMC.

  1. Use the shortcut "Win + r" key to launch the "Run" window
  2. Type "mmc.exe" and click "OK"
  3. A new window will appear. Click "File" then "Add / Remove Snap-in"
  4. Click on "Certificates" then "Add". A window will appear.
  5. In it, choose "A computer account" then click on "Next"
  6. Choose "Local computer" and click "Finish". Finally click on "OK"

Delete the expired intermediate certificate

Now we can delete the expired USERTrust RSA Certification Authority certificate

  1. Back on the MMC, on the left column, click on "Certificates". A list of subfolders appears in the middle.
  2. In this list, double click on "Intermediate certification authorities". And double click on "Certificates".
  3. You see the list of intermediate certificates installed in the Microsoft Windows certificate store.
  4. Locate the "USERTrust RSA Certification Authority" certificate with an expiration date of 05/30/2020
  5. Right click on this certificate and click "Delete"
  6. A warning message appears. click on "Yes". The certificate is deleted.

Installation of the new certificate

We will now import the USERTrust RSA Certification Authority certificate which expires on 12/31/2028. This certificate is available here: USERTrust RSA Certification Authority

  1. Still in the "Certificates" folder of "Intermediate Certification Authorities", right click on "Certificates" in the left column, "All tasks", and "Import"
  2. In the window that appears, verify that the storage location is "Local computer" and click "Next"
  3. Click on "Browse" to find the previously downloaded intermediate certificate (CRT format). Do "Next"
  4. Make sure that "Place all certificates in the following store" is selected and click "Next"
  5. You are shown a summary of what is to be done. Click on "Finish".
  6. When the import is successful, Windows will notify you. You can close the MMC window

You just have to restart the concerned services if necessary.

Finally, you can check the correct installation of this new intermediate certificate using our Copibot tool: Check your certificate

Useful links