Certificates in S60 v3

In previous Symbian phones running S60, there was a file c:\system\data\CAcerts.dat where root certificates etc are stored.
Has this changed in Symbian 9.1 / S60 v3 / Nokia N80 etc?

Probably now in a hidden (invisible to unprivileged apps) directory under c:\private
Message Edited by petrib on 22-Mar-200708:02 PM

Similar Messages

  • Troubles with installing an non-CA certificate on ...

    hi folks,
    i´m encountered with the problem to install an non-ca certificate on our e60.
    i can browse to the website as describe in the howto "installing an certificate on s60". but i can´t find an menu where i can import the certificate...
    could someone please help me?
    thanks a lot,
    Andre

    move the certificate to the phone, then use file manager on the phone to locate the file, then select it. If all is well then it should ask you if you want to install it.
    Hope you are not using SBS2003, because M4E doesn't like self signed certificates.

  • My ovi store and certificate

    My nokia N73 ovi store is not responding(not working) but at first it is working tried to update it but it would'nt come.all that can be seen there is this application is no longer available on your device. So can some one kindly help me outside there please!!! Secondly any time that i download an application and am trxing to instal it a dialoge box appears writen inside certificate expired.please help.!!!
    Thank u!!!
    xours customer

    @lildrake
    Are you referring to accessing OVI Store via browser or application upon device?
    AFAIK there is a version of OVI Store circulating for S60 3rd Ed. FP1 as installed to my N95 after "hard reset" but N73 is original S60 £rd Ed.:http://discussions.nokia.com/t5/Online-services-from-Nokia-Nokia/N95-is-not-supported-by-ovi-store/m...
    If you are referring to .sis applications sourced outside of Nokia/Ovi Store the Symbian certificate has expired upon a number of these now, you have to reset date upon device to a previous time perhaps start with 2010 and change it back to current date after successful installation; it can unfortunately be a matter of trial and error to hit the right one!
    Happy to have helped forum with a Support Ratio = 42.5

  • Checklist for Exchange Certificate issues

    Checklist for Exchange Certificate issues
    1. 
    Why certificate is important for Exchange and What are Certificates used for
    Exchange is now using certificates for more than just web, POP3, or IMAP. In addition to
    securing web services, it has also incorporated Transport Layer Security (TLS) for session based authentication and encryption.
    Certificates are used for several things on Exchange Server. Most customers also use certificates
    on more than one Exchange server. In general, the fewer certificates you have, the easier certificate management becomes.
    IIS (OWA, ECP, EWS, EAS, OA, Autodiscover, OAB, UM)
    POP/IMAP
    SMTP
     2. 
    Common symptoms for
    certificate issue
    Here we can see three different types of the certificate warning, mainly from the Outlook
    side.
    a.
    Certificate mismatch issue
    b.
    Certificate trust issue
    c.
    Certificate expiration issue
    3. 
    Checklists
    In this section, checklists will be provided according to the three different scenarios:
    Certificate Mismatch Issue
    [Analysis]:
    This issue mainly occurs because the URL of the web services Outlook tries
    to connect does not match the host name in the certificate.
    [Checklist]:
    Firstly make sure how many host name in your certificate the certificate. Run “Get-ExchangeCertificate | select certificatedomain”.
    Secondly, check the web services URLs which Outlook are trying to connect to. Run “Test Email AutoConfiguration”
    In this scenario, you need to check the host name for the following services:
    Autodiscover
    EWS
    OAB
    ECP
    UM
    If any of the urls above does not match the one in the certificate, refer to the following article to change
    it via EMS:
    http://support.microsoft.com/kb/940726
     1.
    Do not forget to restart the IIS service after applying the changes above.
     2. Make sure a valid certificate is enabled on the IIS service.
    Certificate Trust Issue
    [Analysis]:
    For the self-signed and PKI-based (Enterprise)
    certificates, they are not automatically trusted by the client computer or mobile device, you must make sure that you import the certificate into the trusted root certificate store on client computers and devices. On the other hand, Third-party or commercial
    certificates do not have this problem. Most commercial CA certificates are already trusted because the certificate already resides in the trusted root certificate store. Because the issuer is trusted, the certificate is also trusted. Using third-party certificates
    greatly simplifies deployment.
    [Checklist]:
    If it’s an Enterprise CA certificate, manually install the root certificate to the “Trusted Root Certification Authorities” folder:
    If it is a 3<sup>rd</sup>-party certificate, first remove and reinstall the certificate. Check whether the Windows Certificate Store on the local
    client is corrupted. If it still does not work, please contact the third-party CA support to verify the certificate.
    Certificate Expiration Issue
    [Checklist]:
    When a certificate is about to expired, we just need to renew it by referring the following article:
    Renew an Exchange Certificate
    http://technet.microsoft.com/en-us/library/ee332322(v=exchg.141).aspx
    To avoid any conflictions, it’s recommended to remove the expired certificate from the certificate store.
    [How to set a reminder to alert the administrator when a certificate is about to expired]:
    It’s easy to fix the certificate expire issue. But it should be more important to set a reminder before the
    certificate expiration. Or there can be a large user impacts.
    Generally, the Event ID “^(24|25)$” will appear in Application log when a certificate is about to expire.
    If it’s not quite visible, we can refer to the following solution:
    http://blogs.technet.com/b/nexthop/archive/2011/11/18/certificate-expiration-alerting.aspx
    OWA certificate revoked issue
    [Analysis]:
    IE
    includes support for server certificate revocation which verifies that an issuing
    CA has not revoked a server certificate. This feature checks for CryptoAPI revocation when certificate extensions
    are present. If the URL for the revocation information is unresponsive, IE cancels the connection.
    [Solution or workaround]:
    1. Contact CA provider and check whether the questioned certificate is in the Revoked List.
    2. If not, check whether the certificate has a private key.
    3. Remove the old certificate and import the new one.
    Workaround:
    IE Internet Options -> Advanced tab -> Clear the "Check for server certificate revocation"
    checkbox.
    4. 
    More References
    Digital Certificates and SSL
    http://technet.microsoft.com/en-us/library/dd351044(v=exchg.150).aspx
    More on Exchange 2007 and certificates - with real world scenario
    http://blogs.technet.com/b/exchange/archive/2007/07/02/3403301.aspx

    (Reported previous post with link to SIS package to moderator)
    This is not the correct SIS package for the N73. The package shown is for S60 3.2 devices, but the N73 is not S60 3.2, I believe it is S60 3.0.
    Most features may work with this SIS, but if you experience strange problems, try using the S60 3.0 version.
    But there are no significant difference between 2.5.3 and 2.5.5 with regard to attachments. The only changes were with localization (languages).
    At this point, try 2.7.0 which is out now:
    http://businesssoftware.nokia.com/mail_for_exchange_downloads.php
    Make sure to pick the right phone on the drop down list. It does matter! There are 4 different packages. This list makes sure you get the right one.
    I have seen some issues with attachments not completing that seem to be carrier dependent. You can test this my using Wifi (if possible).
    Message Edited by m4e_team_k on 28-Sep-2008 12:25 AM

  • Touch Hider S60 E5/^3 Version 1.3 for my Nokia N8 ...

    Hello,
    I have buy the Software Touch Hider S60 E5/^3 Version 1.3 for my Nokia N8 Belle in the Ovi Shop. I have paid for it.
    When I install the software there cames an error messages "abgelaufenes Zertifikat / expired certificate ".
    Please can you help me?
    Thanks.

    THough it seems that the application may have compatibility issues.. try backward setting the date in your phone..(e.g. 01.01.2011).. then see if the application gets installed. If its fine then change the date back to the 'current'.. else, you may have to contact the Developer of the application...
    BTW, if you had installed the lite version, did you un-install it before installing the paid version as required?

  • Unable to check certificate validity online. check...

    please help me on this... m not able to load anything
    my phone is n73-1
    Personal details removed by a moderator. We kindly ask you not to share your personal contact details publicly on this forum.

    Nokia Symbian/S60 wrote:
    Unable to check certificate validity online.
    As this could temper your security, before you change those settings (or at least after you changed them), please, have a look at a detailed explanation …

  • E71 App check certificate error while installing

    I just bought my E71 two days ago and I'm pretty much enjoying it but for one thing, I have been experiencing problems when Installing apps. At first I cant install both themes and apps, then I changed software installation to all and the online certificate check to off, I was able to install only the themes and the files from the Download! app... I still cant install Apps that I downloaded from my PC, I tried to change the date.... and still nothing happens, the "certificate error check with app supplier". Does anyone have an idea to solve this problem???
    Thank YOu~

    @sarfaz
    For MMSSync set the phone date to a date between October 6th 2006 and October 5th 2011.
    Whilst suggestion by rayhipkiss should at least enable to install the above, on specific S60 3rd applications certificate may well have expired prior to 2010
    To save trial and error if there is an application that you really want post details and it is possible to check certificate details within the .sis file.
    Happy to have helped forum with a Support Ratio = 42.5

  • XpressMusic 5800, IM+ (and other apps) certificate...

    Hello.
    I have some problems with application in Menu->Download!.
    For example I want to download IM+, it tells me that it's free, I choose "get" and after IM+ downloaded, phone shows me error message "Expired Certificate".
    I get same error message then I try to use other apps in the "Download!" directory.
    Can I get applications in the Download! menu or it is normal to see this error?
    PS Sorry for my English.

    Not sure that the problem is with the time. It might be that the touch S60 platform might need a different signature... Just guessing, though... If returning the clock a year back, for example, does not help, it would be best to compare to normal S60 (N95, N82, for example). If the problem is gone, than the issue is with the S60.5 platform. ocehb, if you could just compare installing one of these applications on 'normal' N-Series and share the information with us, you'd be of enormous help to every future owner of 5800 (me including) ;-)
    Ericsson T10i -> Nokia 7110 -> Siemens C45, C55, M55, M65 -> Nokia 6131, N73, N82 -> HTC Wildfire, Desire HD -> Nokia Lumia 800 -> HTC Desire X -> Lumia 820 -> Sony Xperia SP -> Lumia 925 + Sennheiser CX 500
    If I've helped, use the Kudos button to thank

  • Nokia Symbian S60 on your SE (Help)

    I am the owner of the phone brands: Sony Ericsson Satio.
    OS: Simbian S60 (Nokia)
    The company Sony Ericsson has ceased to update the operating system since 2010.
    This phone has been denied access to the only store application OVI.
    Third-party applications without the certificate does not install. What do I do now with this phone? Would you like Nokia to support all users with their OS.
    Did everyone who got this phone will last.
    (In Russia, this phone was worth at the beginning of 2012 to $ 500, money is wasted per year)

    None of the "Lite" players support ActionScript 3 which was introduced in Flash Player 9. So the only content you can see with a "Lite" player is content that was developped for Flash 8. Apart from the content that explicitly targets the Mobile players, nobody targets Flash 8 anymore.
    No ETA for Flash 10.1 for Symbian has been announced.

  • E61 cannot import personal certificate

    Hello,
    I can't import personal certificate. I have personal certificate in p12 (pkcs12) format and it can be imported into firefox without any issues. However when I open this certificate on E61 I am asked for:
    password for my certificate - I enter correct one
    E61 proceeds to to Screen where it says:
    File contains:
    1 private key
    1 personal certificate
    1 authority certificate
    Save? When I click on save I get message:
    Private key corrupted!
    then it proceeds to CA which works fine.
    What I am doing wrong? Kindly assist as this is show stopper in 170K+ employees company.

    Hi,
    I'm not only unlucky, I'm frustrated! :-(
    I've got exactly the same problem. Modell: E65.
    In our company around 50000 users are already using personal certificates, generated using an openssl pki framework.
    Installing/migrating/running a Windows-PKI instead, only for importing P12-Files into our Nokia mobile's is not a solution nor an option.
    All our user-certificates (Server-,Client-,Multi-Level-CA-Certificates) are working fine within standard-protocols and standard applications (e.g. IMAPS, VPN/IPSec, WPA-EAP-TTLS/TLS, HTTPS, LDAPs,...), even within Microsoft's client-appilcations (IE / Outlook) there are no problems importing / using them for encryption, authentication or signing purposes.
    So there should be no problem, regarding the import into a E65?!
    I tried to convert some demo-certificates various ways, exported, converted them to DER, build different P12-formated files but not chance: the E65 always reports "File corrupted".
    I also followed the instruction found under
    https://blogs.forum.nokia.com/view_entry.html?id=412
    So I tried to download a p12-Container directly from a test-webserver using the correct mime-type, no luck: Corrupted File!
    But on the other hand, any p12-file, which the E65 says is corrupted, could be imported into IE/Firefox/Outlook/Thunderbird (the later two on windows & linux plattforms) or opened/investigated using openssl (0.9.8c and 0.9.8d) on the command line without any problems.
    The hint (two posts above), creating certificates using MS-AD-integrated PKI gave me a small hope again. (Please do not understand me wrong, migrating all our user/server certs and PKI-Infrastructure to MS is completly impossible, but a small test will show whether out p12-Files cause the corruption problems).
    So I imported (doubleclick, windows wizard...) the openssl-generated p12 into IE (flagged "exportable") without problems. Right after the import, I exported it various ways (e.g. w/o stong encryption) into a MS-pfx (aka p12) formated file. Renamed the suffix from pfx to p12 and gave it to openssl for processing / investigation:
    openssl pkcs12 -in testuser.p12 -info
    Enter Import Password:
    MAC Iteration 2000
    MAC verified OK
    PKCS7 Data
    Shrouded Keybag: pbeWithSHA1And3-KeyTripleDES-CBC, Iteration 2000
    Bag Attributes
    localKeyID: 01 00 00 00
    friendlyName: {EE88EF5C-5404-487C-AB22-AA56E79D447C}
    Microsoft CSP Name: Microsoft Enhanced Cryptographic Provider v1.0
    Key Attributes
    X509v3 Key Usage: 10
    Ok the content seems to be in "Microsoft CSP" format!!! (remembering two posts earlier, that's the container-format MS-PKI produces, so a successfull import of this file should be possible?!.... No way either!!! "File corrupted!"
    Another point: during my first p12 import try I used a corporate-standard-p12 file, that means, it contains:
    1 x User-Cert
    1 x User-Key
    1 x Intermediate-level-CA-Cert
    1 x Root-level-CA-Cert
    The E65 successfully imported the two CA-Certs, ask for a name and stored them under "Authorities". They are accessible within S60 (Security->certif.manag) and anything is fine with them. But the also contained user-certificate and the user-key resulted in "File Corrupted!". :-(
    So, for me in the moment it looks really that there is a bug in S60-3rdEd. (E65). Our certificate-containers are as far as I can say completly standard conform all software (opensource/closed source) can read/import our p12-contents without problems, even the E65 can partialy (CA-Certs) read the p12 contents (but not the user-cert/key). :-(
    I would be very happy if someone else can confirm the above results and even more happy if someone else can give me more ideas where to look for a possible solution.
    What I'm missing is an exact specification from Nokia/Symbian, regarding the P12 contents. That means, Certificate/Key Encryption, Formats, Hash-Algorithms, Iterators, Mac-Iterators, and so on... If such an specification would be available/accessible chances are good to be able to generate a valid p12 file containing importable private keys. Information like DER/PEM and mime-type that's by far not enough.
    Because I was not able to find such details specs, all I can offer in the moment is to generate test certificates and p12-container-files for further in-deep debugging?!
    If it is not a bug of S60-3rdEd. perhaps someone else reading this thread can offer a MS-PKI-generated (and of course successfully imported ins S60) p12-File (even revoked should not be a problem) with all passphrases for download, so I can try to investigate in deep the formats and the differences?
    Many thanks for your help!
    Cheers
    Krum

  • Accidentally deleted CA certificates

    E61i, S60 v3
    I accidentally deleted the CA certificates, in particular  thawte premium server CA, etc. I need that to set up WPA2 PEAP network.
    I did the "org. phone" setting in settings-phone-general, which only recover the original setting, but does not recover the deleted certificates. 
    The following post helps instruct how to install CA certificates, but I don't know where to find those certificates in the first place.
    http://technologicalities.blogspot.com/2006/10/security-certificates-on-nokia-6630.html
    Thanks for help!
    Solved!
    Go to Solution.

    Found them here:
     Thawte download:
    http://www.thawte.com/roots/index.html
    Geotrust: http://www.geotrust.com/resources/root-certificates/index.html

  • SIS Files on S60 3rd edition?

    Hi,
    Has anyone managed to successfully install a Flash Lite
    application via SIS file on a series60 3rd edition device?
    My SIS file works fine on 2nd edition devices, but when i
    change the product UID range to 3rd ed. if just comes up straight
    away with the 'not supported' installation error.
    Is there a new version of makesis that i must use?
    Any ideas?
    Paul

    For anyone having the same problems as me...
    If you are trying to create a sis file for 3rd edition or
    UIQ3
    download the s60 3rd edition CDK from Forum Nokia (this will
    give you the newer version of makesis, and some other stuff i
    havent checked out yet,).
    Download the 'Symbian Developer Certificate Request' app from
    Symbian signed as well as
    some new UID's
    Change your PKG file to have the new OS UID's eg.
    s60 1st Edition (0x101F6F88), 0, 0, 0, {"Series60ProductID"}
    s60 1st Edition, FP1 (0x101F8202), 0, 0, 0,
    {"Series60ProductID"}
    s60 2nd Edition (0x101F7960), 0, 0, 0, {"Series60ProductID"}
    s60 2nd Edition, FP1 (0x101F9115), 0, 0, 0,
    {"Series60ProductID"}
    s60 2nd Edition, FP2 (0x10200BAB), 0, 0, 0,
    {"Series60ProductID"}
    s60 2nd Edition, FP3 (0x102032BD), 0, 0, 0,
    {"Series60ProductID"}
    The new ones:
    S60 3rd Edition [0x101F7961], 0, 0, 0, {"S60ProductID"}
    S60 3rd Edition, FP1 [0x102032BE], 0, 0, 0, {"S60ProductID"}
    UIQ v2.0 ( 0x101F617B ),2,0,0,{ " UIQ20ProductID " }
    UIQ v2.1 (0x101F61CE), 2, 1, 0, {"UIQ21ProductID"}
    UIQ v3 (0x101F6300),3,0,0,{"UIQ30ProductID"}
    Note: you cant mix the old and the new product id's in one
    pkg file as the sis files are created differently and are not
    compatable, you will need one for the older nokia devices, one for
    the new 3rd edition, and another if you develop UIQ (although there
    are none available with UIQ3 and Flash lite yet...it might be
    possible you'd have to have a separate one for that as well!).
    If only Symbian could have written a simple document with all
    that in it, it would have saved me and my collegue hours of trying
    to get past error messages!
    Paul

  • SmartMovie on s60 v.3

    Hi
    Has anybody purchased SmartMovie from lonelycatgames in the last month and successfully installed on S60 v.3?
    Although "all" is selected in Application Manager, it won't install with error "certificate expired" It is currently an open issue with helpdesk!
    Happy to have helped forum in a small way with a Support Ratio = 37.0

    Type *#7370# to format the phone memory.
    Dont forget to back up the imp data i.e., contacts etc by PC Suit.

  • Certificat error

    hi
    each time i try to install an ovy application it says certifict error contact the application's creator
    i really need some help

    make sure that Date and Time is correct, time zone and daylight saving hour as well.
    what is the model of your phone? bec for S60 there is a setting for online certificate check under installation settings.
    Hope this help

  • Certificates ERROR!!!

    Hi folks...
    I'm having some problems to install some softwares on my e71 , PuTTy and Slick.
    I already disabled the certificate verification, enabled the instalation of all softwares and changed the date of my phone to 2008, 2007 and 2006, but same ERROR keep ocurring!!!
    Does anyone knows how to solve my problem?
    Message Edited by lthiberiol on 23-Apr-2009 07:27 PM

    the most common and trusted method is by
    Certificate error:
    If you get certificate error when attempting to install the program or themes on your S60 3rd Edition smartphone,
    it means that you haven enabled installation of unsigned SIS files. Go to Tools -> App. Manager,
    choose Options -> Settings and set Software installation to All and Online certif. check to Off.
    Certificate expired:
    change phone data (on clock setting) from 2008 to 2006/07, install theme than came back to 2008. Some old thems
    has certificate expired. With new themes you don’t have this problem.........
    But if still ur problem persists then i wud say that u take ur backup either on pc or memory card and reformat ur phone:
    *#7370# - Reformat your phone
    Phone reset code: *#7370# with lock code 12345......
    If this also doesn't work then try re-updating ur software..if all above fails send it to nokia care centre
    If  i have helped at all a click on the white star below would be nice thanks.
    Now using the Lumia 1520

Maybe you are looking for

  • Is there a way to open a chat window with lookout?

    I know there is a windows-chat embeded in Windows but our IT department has it blocked in all the machines. So I created, using a run object, a wordpad window to chat remotelly with the operator of the system using VNC4.0. Problem is that as soon as

  • Hyperlink in a TextField on an Applet

    How do i insert a hyperlink in a TextField object which is in an applet and make that hyperlink reference a new window thanks for the help

  • Windows and VMware fusion

    How do I uninstall Windows 7 on my MacBook? I also want to uninstall my VMware fusion. If I uninstall VMware Fusiun, will Windows 7 also be uninstalled automaticly?

  • What happens when UNDO space is full? Transaction takes more time to ERROR?

    I have a long running transaction (more than 3 hours), and at the same time other operations are occurring on different tables, using the same UNDO space. Sometimes we see ORA-30036, but this error occurs very late in the process. The transaction nor

  • HPG62-Reinstalled Windows & Sucessfully Recovered Files...Now What?

    Hello, Now that I have my recovered files, including program files and my documents I don't know what I should do. I'm using Windows 7 Home Premium 64bit. I have reinstalled MS Office (did this and upgraded to the latest version of Office before the