APPLIES TO: All Versions
This article covers the steps required to bulk export certificates from Entrust, followed by the instructions necessary to import those certificates into the Venafi Trust Protection Platform database. This will leverage the Venafi Server Agent’s ability to discover and upload certificates into the TPP database.
NOTE: For the purposes of the instructions in this article, it is assumed that you have the necessary credentials to access Entrust Certificate Services.
The bulk import process follows these high-level steps. Details for each step are documented below.
- Export certificates from Entrust Certificate Services
- Import certificates into Venafi Trust Protection Platform
EXPORT CERTIFICATES FROM ENTRUST CERTIFICATE SERVICES
From a browser, access Entrust Certificate Services using the following URL:
From the Certificate Services home screen, ensure you are on the ECS Certificates tab. From there, click the stacked line icon in the upper-left corner of the screen and click the Select all records option.
On the right side of the menu, click the Export Certificates option. This will download a zip file containing all of your certificates.
After a few moments, your download will complete. Unzip the file and save the resultant directory to the system which will be scanned using the Venafi Server Agent.
IMPORT CERTIFICATES INTO VENAFI TRUST PROTECTION PLATFORM
With the feature release of the Adaptable CA driver in version 19.1, the Trust Protection Platform is able to integrate with a multitude of Certificate Authorities and perform various functions utilizing API/SDK endpoints and custom PowerShell scripts. For instructions on importing certificates to TPP, please use the following link:
In versions 18.4 and earlier, this process leverages the Venafi Server Agent’s ability to discover and upload certificates into the TPP database. This process also properly prevents any attempt to import ‘duplicate’ certificates into the database. For instructions on performing a bulk import into TPP, please use the following link:
For instructions on how to import bulk certificates on versions prior to 17.2, use the link below: