- Copy the downloaded certificate file to the Windows Server.
- Double-click the USM-NXLog-client.pfx file to launch the Certificate Import Wizard.
-
For the Store Location, select the Local Machine.
Note: Windows Server 2008 does not present the option to import into the Local Machine certificate store. For Windows 2008 installations, use the information in the following Microsoft document to import the certificate into the Local Machine certificate store:https://technet.microsoft.com/en-us/library/cc754841(v=ws.11).aspx
- When the wizard prompts you for a password, leave it blank and click Next.
-
Select automatically select the certificate store based on the type of certificate and click Next to finish.
Important: In order to access the Security event log, the Network Service account must be in the Event Log Readers group.
- If you do not already have the WinHttpCertCfg.exe tool on your Windows Server, download and install it.
- Go to the Administrative Tools in Windows and open the Computer Management utility.
-
Select Local Users and Groups > Groups > Event Log Readers.
Note: If your system is deployed as an Active Directory domain controller, Local Users and Groups will not be available. In this case, refer to the Windows documentation to add the network service account to the domain Event Log Readers group.
- Right-click Event Log Readers and select Add to Group.
- Click Add.
- In the Enter the object names to select field, enter Network Service as the object name and click Check Names.
- Click OK and close the Computer Management utility.
-
Give the Network Service account access to the installed certificate: