User certificate
1. Edit the certificate application
Important: The application must proceed in the same browser that you will use to download the certificate later. Users with centrally stored profiles should use Firefox because of technical problems with Internet Explorer!
- Fill out the application form on the website of TU Dresden CA
:
- with the email (only...@tu-dresden.de is possible), first and last name, department (optional) as well as PIN (= personal password for the certificate files);
☑ Place a tick mark to commit to the rules of DFN-PKI and to agree with the publication of your certificate
- with the email (only...@tu-dresden.de is possible), first and last name, department (optional) as well as PIN (= personal password for the certificate files);
- click the "further" button an then the "confirm" button.
2. Automatic backup of the private key in the Firefox memory.
3. Complete the application
- Open the application as PDF with the button "show the certificate application".
- Print the pdf document and sign it.
4. Hand in application & identity check
- Take the application form to the service-desk of ZIH and hand it in; show your valid identity card, passport or driving license for the identity check.
- Alternative: identity check e.g. in the working group on site by trained colleagues.
- The identity check is valid for 3 years and 3 months.
5. The application will be processed
6. Install the certificate
- You will revieve an email from ca@tu-dresden.de:
"Sehr geehrte Nutzerin, sehr geehrter Nutzer, die Bearbeitung Ihres Zertifizierungsantrags ist nun abgeschlossen (Dear user, the processing of your certificate application is ready). [...] " - "[...] 2. The personalized certificate can be obtained by clicking on the following link: [...] "
→ Open the mentioned link in Firefox. - Confirm the import.
7. Secure the certificate
- Export from Firefox as p12 file using this manual.
- Secure the data (e.g. by copying it to the USB-stick) and do not forget your personal password.
- User with centrally stored profile, who want to use the certificate in MS Outlook or with Adobe Acrobat, have to repeat the export once again with a special password!
For this, please contact the responsible administrator!
8. Import the certificate in the Windows certificate store
- double click on the exported p12 file
- opening the certificate-import assistant:
9. Certificate usage in the e-mail programmes
- MS Outlook accessing the Windows certificate store, the alternative e-mail programme, such as Thunderbird, Eudora oder Pegasus Mail, usually use their own certificate store. (the p12-Datei have to be imported separately there!)
- Selection of the certificate in Outlook 2013:
- Datei | Optionen | Trust-Center | Einstellungen für das Trust-Center
- E-Mail-Sicherheit | Verschlüsselte E-Mail-Nachrichten: Auswahl Standardeinstellungen für ausgehende Nachrichten
- Einstellungen: Auswahl des Zertifikats
- Datei | Optionen | Trust-Center | Einstellungen für das Trust-Center