MZ@ !L!This program cannot be run in DOS mode. $Rؕ3}3}3}H̴3}H̱3}Rich3}PEL!  Rp@P.rsrc`R@@h8Ph (@Xgp ?@AEFGL0MHN`OxPQRXYZ[ \8]P^h~       ( 8 H X h x           ( 8 H Xp8LDxZ%@-41 @4(7$99h;4< @B6xEHMQx,VVY\\ |\p\MUI+DR}0OCHmFeT9x¾n-Qt 1% MUI en-USHH@MS Shell DlgPPPPCertificate EnrollmentFull DN Common nameCountryDomain componentEmail Given nameInitialsLocality OrganizationOrganization unitStateStreet addressSurnameTitleDirectory nameDNSEmailGUIDIP address (v4)IP address (v6) Registered IDURLUser principal name Other namePABefore You Begin}The following steps will help you install certificates, which are digital credentials used to connect to wireless networks, protect content, establish identity, and do other security-related tasks. Before requesting a certificate, verify the following: Your computer is connected to the network You have credentials that can be used to verify your right to obtain the certificateEverything is OKPARequest CertificatesxYou can request the following types of certificates. Select the certificates you want to request, and then click Enroll.'Requesting certificates. Please wait...WThe enrollment server is being contacted to obtain the certificates you have requested. Certificate Installation ResultsMThe following certificates have been enrolled and installed on this computer.*Failed to install one or more certificatesOne or more of the certificate requests that you submitted could not be completed. Review the information that appears below each certificate for information on how to proceed..Where do you want to save the offline request?If you want to save a copy of your certificate request or want to process the request later, save the request to your hard disk or removable media. Enter the location and name of your certificate request, and then click Finish.Certificate InformationClick Next to use the options already selected for this template, or click Details to customize the certificate request, and then click Next.Failed to create requestFailed to create custom requestEnrollment errorRequest CertificatesPAMThe following certificates are available. Click 'Enroll' to start enrollment.'Requesting certificates. Please wait...XThe Credential Management Service is contacting your network to obtain the certificates.Custom requestVChose an option from the list below and configure the certificate options as required.#Certificate types are not availableYou cannot request a certificate at this time because no certificate types are available. If you need a certificate, please contact your administrator.1Certificate auto-enrollment has not been enabled.=If you need a certificate, please contact your administrator.$Select Certificate Enrollment PolicyCertificate enrollment policy enables enrollment for certificates based on predefined certificate templates. Certificate enrollment policy may already be configured for you.Request CertificatesvYou can request the following types of certificates. Select the certificates you want to request, and then click Next.PASTATUS:Details Subject name:Alternative name: Key usageApplication policies: &Properties &View request&View CertificatecThe following options describe the uses and validity period that apply to this type of certificate:Cryptographic Service ProviderA CSP is a program that generates a public and private key pair used in many certificate-related processes. Select cryptographic service provider (CSP): Key options:Set the key length and export options for the private key. Key size:Key permissions"Set permissions on the private keyStrong private key protectionMake private key exportable Allow private key to be archivedSet permissions...Key typeSKey usage defines the allowed uses for a private key associated with a certificate.Exchange Signature/Request Files (*.req)*.reqAll Files (*.*)*.* File Name: &Browse... CRL signingData encipherment Decipher onlyDigital signaturePA Encipher only Key agreementKey certificate signingKey enciphermentNon repudiationOffline CRL signing Template nameMany organizations use a registration authority (RA) to manage certificate requests. Use the following certificate to sign this certificate request.Signing certificate &Browse ... Object ID:Value:CriticalEnable this extensionTemplate Information^More information is required to enroll for this certificate. Click here to configure settings. Enrolling... SucceededEnrollment pendingFailed UnavailableRequest denied AvailableEnrollment requiredRenewal requiredRetrieving pended certificatePAShow &all templates&Show all enrollment servers&Show all CSPsPASubjectGeneral Extensions Private KeyCertification Authority SignatureUse custom permissions^More information is required to enroll for this certificate. Click here to configure settings.Add >< RemoveEnterprise root CAEnterprise subordinate CAStandalone root CAStandalone subordinate CAAA enrollment server is needed to issue and renew certificates. The system will connect to enrollment servers in the following list to process certificate requests. Not all certificate templates are available each enrollment server. For diagnostic purposes, it may be helpful to identify all available enrollment servers.Validity period (days):Enrollment progressFriendly &name: &Description:VA friendly name and description will make it easier to identify and use a certificate.The subject of a certificate is the user or computer to which the certificate is issued. You can enter information about the types of subject name and alternative name values that can be used in a certificate.GThe following are the certificate extensions for this certificate type.PADefault key size?Please select at least one Certification Authority to continue.+Please select at least one CSP to continue.Certificate Properties&Type: &Object ID:&Value: Path length:Subject of certificate6The user or computer that is receiving the certificate?The key usage extension describes the purpose of a certificate.Available options:Selected options:)Extended Key Usage (application policies)PAAn application policy (called enhanced key usage in Windows 2000) defines how a certificate can be used. Select the application policy required for valid signatures of certificates issued by this template.Basic constraints}The basic constraints extension is used to indicate whether the certificate is a CA certificate or an end entity certificate.#Allow subject to issue certificatesInclude Symmetric algorithmlSymmetric algorithms give information about the system capabilities of certificates issued by this template.Custom extension definitionoCustom extensions can be defined by specifying object identifiers (OIDs). Add the following custom extensions:Type:Error Error detailsUser name or alias: &Browse... Select a user!To request a certificate on behalf of another user, enter the formal name or domain name of that user. For example, Firstname Lastname, username, or domain\username. Before enrolling for a certificate, make sure the device on which the user certificate needs to be installed is attached.#Select Enrollment Agent CertificateYou need an enrollment agent certificate in order to sign a certificate request on behalf of other users. Click Browse to locate a signing certificate, and then click Next.&Enroll &Next userCustom request Full ControlRead Template:&Suppress default extensionsRequest format: &PKCS #10&CMC File format:B&ase 64Binar&yNote: Key archival is not available for certificates based on a custom certificate request, even when this option is specified in the certificate template.(No template) Legacy key(No template) CNG keyMake these key usages critical$Make the Extended Key Usage critical-Make the basic constraints extension critical#Make this custom extension criticalYThe selected options contain duplicate values or are incompatible. Change your selection.&CloseSelect Hash Algorithm1Select Hash Algorithm to be used for this requestHash Algorithm:Default AlgorithmSelect Signature FormatUse alternate signature format(You have entered a value that is invalidInsert smart cardRPlease insert a smart card into the smart card reader to save the new certificate.If the smart card is already in the reader, remove the smart card and insert it again. Note: This certificate cannot be saved on the smart card used to sign the certificate request. private keyT&ype:Val&ue:Add >< RemoveAdd >< Remove Key usage: &Key usage*&Extended Key Usage (application policies)&Basic constraints&Include Symmetric algorithm&Custom extension definition&Cryptographic Service Provider Key &optionsPA Key &typeSelect &Hash AlgorithmSelect Signature &FormatKey &permissions-%1 already exists. Do you want to replace it? Configured by your administratorConfigured by youEnrollment Policy ID:Remove this serverPolicy server informationPolicy server friendly nameAdd New!Proceed without enrollment policyCustom Request&No enrollment policies are configured. N O S P Z+ X# C" V%+.# -"-%uPuQ4VS_VERSION_INFO@%@%?*StringFileInfo040904B0LCompanyNameMicrosoft CorporationfFileDescriptionX509 Certificate Enrollment UIr)FileVersion6.3.9600.16384 (winblue_rtm.130821-1623)BInternalNameCertEnrollUI.dll.LegalCopyright Microsoft Corporation. All rights reserved.ROriginalFilenameCertEnrollUI.dll.muij%ProductNameMicrosoft Windows Operating SystemBProductVersion6.3.9600.16384DVarFileInfo$Translation PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGX