I created a my private CA and form a pkcs12 certificate file for testing. I did this on my Linux box with openssl by:

  1. openssl req -config /etc/openssl.cnf -subj /CN=aa1@2C/O=Ruckus Wireless, Inc./ST=CA/C=US -batch -new -nodes -key users/2C.key -out users/2C.csr
  2. openssl ca -config /etc/openssl.cnf -extensions client_cert -batch -in users/2C.csr -out users/2C.crt
  3. openssl pkcs12 -export -out users/2C.pfx -inkey users/2C.key -in users/2C.crt -certfile cacert.pem -passout stdin

After that, I copied the 2c.pfx to my Windows 7 machine and tried to install it, but the error message bumped out:

Invalid Public Key Security Object File: This file is invalid for use as the following:Personal Information Exchange.

What is the reason for this? Did I create a broken pfx file?

Edit
Report