Exporting the CA Root Certificate for the Altiris Real-Time System
Manager software
(Optional)
To use the SOL/IDE-R functionality of Intel AMT with Real-Time System Manager,
you must export the CA root certificate to a file, and then configure the connection
profile to use this file.
This certificate is used to validate the authenticity of the managed Intel AMT
computer and the Notification Server computer during SOL and IDE-R
communication.
You can obtain the CA root certificate in the following ways:
■
Export the CA root certificate from the Local computer certificate store.
■
Download the CA certificate from the CA computer using the certificate services
Web site (http://<ca_server_name>/certsrv/).
See
“Configuring TLS”
on page 96.
To export the CA root certificate
1
On the CA computer, click Start > Run.
2
In the Open box, type
mmc
, and then click OK.
3
In the Microsoft Management Console, click File > Add/Remove Snap-in.
4
Click Add.
5
Click Certificates, and then click Add.
6
Click Computer account, and then click Next.
7
Click Local computer, click Finish, and then click Close.
8
Click OK.
9
In the Microsoft Management Console tree, locate your CA root certificate in
the Trusted Root Certification Authorities folder, and then open the
certificate.
10
Click the Details tab.
11
Click Copy to File.
12
Use the wizard to export the certificate in the Base-64 encoded X.509 format.
Configuring the connection profile to use TLS
You must configure the connection profile to use secure mode for communications
with Intel AMT computers.
97
Configuring TLS
Configuring TLS