Adobe 22002484 Security Guide - Page 25

Managing Windows Digital IDs, 2.4.1 Finding a Digital ID in a Windows Certificate Store File

Page 25 highlights

Acrobat Family of Products Security Feature User Guide Getting and Using Your Digital ID Managing Windows Digital IDs 25 2.4 Managing Windows Digital IDs For the Acrobat family of products, a "Windows digital ID" is an ID that resides in the Windows certificate store rather than the Acrobat store. Windows supports several formats listed in Table 2. These IDs are protected by your Windows login, are easy to use, and do require file-level password protection. However, they are not portable and are less secure when a file-level password is not specified. The Windows store makes these IDs available to other Windows applications such as Acrobat and Adobe Reader. When an ID in the Windows store is registered with the application, it appears in the Security Settings Console. IDs in the Windows store are subject to the same operations as described in "Generic ID Operations" on page 14 Figure 16 Windows digital ID menu 2.4.1 Finding a Digital ID in a Windows Certificate Store File If a required digital ID file does not appear in the digital ID list, search for it and add it. You can browse to PKCS#12 files (.pfx or .p12) and Windows Certificate Store compatible files (.cer and .p7b). For details, see "Finding an Existing Digital ID in a PKCS#12 File" on page 18. 2.4.2 Deleting a Digital ID from the Windows Certificate Store IDs that have been added to the Windows certificate store can only be deleted from the Security Settings Console if they are self-signed IDs created in Acrobat or Reader version 8.0 or later. Other IDs must be removed from the Windows store by using an application such as Internet Explorer. The store's location in Internet Explorer may vary by version, but is typically found under Tools > Internet Options > Content tab > Certificates button. 2.5 Managing Roaming ID Accounts and IDs A roaming ID is a digital ID that is stored on a server. The private key always remains on the server, but the certificate and its public key can be downloaded at the subscriber's request to any location. Roaming IDs require an Internet connection. Roaming IDs enable remote ID access as well as Web-based user self-registration and ID issuance from a roaming ID server and central ID management. When IDs expire, new ones can be issued and placed on a

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149

Acrobat Family of Products
Getting and Using Your Digital ID
Security Feature User Guide
Managing Windows Digital IDs
25
2.4
Managing Windows Digital IDs
For the Acrobat family of products, a “Windows digital ID” is an ID that resides in the Windows certificate
store rather than the Acrobat store. Windows supports several formats listed in
Table 2
. These IDs are
protected by your Windows login, are easy to use, and do require file-level password protection. However,
they are not portable and are less secure when a file-level password is not specified.
The Windows store makes these IDs available to other Windows applications such as Acrobat and Adobe
Reader. When an ID in the Windows store is registered with the application, it appears in the Security
Settings Console. IDs in the Windows store are subject to the same operations as described in
“Generic ID
Operations” on page 14
Figure 16
Windows digital ID menu
2.4.1
Finding a Digital ID in a Windows Certificate Store File
If a required digital ID file does not appear in the digital ID list, search for it and add it. You can browse to
PKCS#12 files (.pfx or .p12) and Windows Certificate Store compatible files (.cer and .p7b).
For details, see
“Finding an Existing Digital ID in a PKCS#12 File” on page 18
.
2.4.2
Deleting a Digital ID from the Windows Certificate Store
IDs that have been added to the Windows certificate store can only be deleted from the Security Settings
Console if they are self-signed IDs created in Acrobat or Reader version 8.0 or later. Other IDs must be
removed from the Windows store by using an application such as Internet Explorer. The store’s location in
Internet Explorer may vary by version, but is typically found under
Tools > Internet Options > Content
tab > Certificates button.
2.5
Managing Roaming ID Accounts and IDs
A roaming ID is a digital ID that is stored on a server. The private key always remains on the server, but the
certificate and its public key can be downloaded at the subscriber’s request to any location. Roaming IDs
require an Internet connection.
Roaming IDs enable remote ID access as well as Web-based user self-registration and ID issuance from a
roaming ID server and central ID management. When IDs expire, new ones can be issued and placed on a