Link to home
Start Free TrialLog in
Avatar of dolphan757
dolphan757

asked on

DoD CaC card and email encryption for Outlook 2003

I have users who are using Active Client 6.0 with their CaC cards to access DoD websites. Some users are using them with their email in Outlook 2003 to digitally sign and encrypt emails. The perosn who set that up is no longer here. For some reason I cannot get it to work. I use Active Client to make the certificates available to Windows and it does that successfully. The pdf that is attatched to this is what I used. When I try and publich it to the GAL it says there are no valid certificates to publish. The cert dates are saying they are valid. When I try and send an email digitally signed it says there are no valid certificates to use with this email account. There are opther people in our organization who are using DoD certificates to digitally sign and encrypt corporate email. Can anyone help?
Outlook2003SignandEncryptEmailv1.pdf
Avatar of clevalley
clevalley
Flag of United States of America image

I have noticed some funkyness with some users and publishing their certs to the GAL as well.  When that happens we do this (I do not have a CaC reader in front of me so I am going from memory)
1 - Export the certificate using the ActiveClient Software. (I think PKCS #7 format)
2 - Import the cert  for the user using Active Directory User and Computers.  Right click the user and go to Propterties then 'Publish Certificates' tab.  Select the "Add from file" button and import the cert...
See if that works for you.
Avatar of dolphan757
dolphan757

ASKER

Can I do this even though these certs were issued by the the US NAVY? These are DoD certs from a CaC card. Can I publish them in our corporate Domain AD?
ASKER CERTIFIED SOLUTION
Avatar of clevalley
clevalley
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Im trying to get this user to encrypt email using his corporate email account to recipients with .mil accounts.
O.K. I will give it a try.