When renewing a certificate, users are presented three choices for installing the new certificate:
Personal store
Local machine store
Smart Card
The option 'Personal store' is selected by default.
Use a text editor to open the file <KCA-install-dir>/WebServer/enroll-server/get-cert-msie.xuda, and look for the following lines:
<P> Where is this certificate being installed?
<SELECT NAME="USERPROTECT">
<OPTION VALUE="0" SELECTED>Personal store</OPTION>
<OPTION VALUE="1">Local machine store</OPTION>
<OPTION VALUE="2">Smart Card</OPTION>
</SELECT>
</P>
To change the default selection to 'Smart Card', change the above lines so they look like the following:
<P> Where is this certificate being installed?
<SELECT NAME="USERPROTECT">
<OPTION VALUE="0">Personal store</OPTION>
<OPTION VALUE="1">Local machine store</OPTION>
<OPTION VALUE="2" SELECTED>Smart Card</OPTION>
</SELECT>
</P>
Save the changes. All users will get 'Smart Card' as the default option to install the renewed certificate to.
Related Articles
Xudad crashes soon after renewing System CA certificate 29Number of Views How to renew SSL server certificates with RSA Certificate Manager 87Number of Views Issue with RRM after renewing ssl server certificates 17Number of Views How to renew the Self-signed Certificate for Virtual Host Management 24Number of Views Unable to renew certificate from web enrollment server 38Number of Views
Trending Articles
RSA Authentication Manager 8.9 Release Notes (January 2026) RSA announces the availability of the RSA SecurID Hardware Appliance 230 based on the Dell PowerEdge R240 Server How to troubleshoot Oracle database ORA-04030 errors in RSA Identity Governance & Lifecycle RSA Authentication Manager Upgrade Process Microsoft SQL Server Collectors can no longer connect to the SQL Server database after upgrade to Microsoft SQL Server 201…