Was Unable To Find Required Root Certificates Exclusive | Kepware The Installer
C. Enable Windows Crypto services
: If the machine must remain offline, you can manually install the missing certificates (typically from GlobalSign , VeriSign , or Microsoft ) .
Move the downloaded .cer or .crt files to the target machine via a secure USB drive or authorized data transfer path.
In some cases, the Windows certificate store itself may be corrupted, or specific Group Policy Objects (GPOs) may be stripping out third-party root certificates, leaving the machine unable to trust commercial software vendors. In some cases, the Windows certificate store itself
Browse to your transferred certificate file and click through the prompt to finish the installation.
Open the on your domain controller.
To resolve this issue, you must manually introduce the required root certificates to the offline machine's local operating system store. To resolve this issue, you must manually introduce
: The machine cannot reach the Windows Update servers during installation.
Industrial environments often feature "air-gapped" computers that cannot access the internet. Windows normally updates its root certificates automatically via Windows Update. Without internet access, the machine cannot fetch the updated certificate chain required to validate the installer.
Opening this log file will reveal specific error codes that confirm a root certificate is missing. Common entries include: the "GlobalSign Root CA - R3")
This definitive troubleshooting guide details why this error occurs during the PTC Kepware setup process and provides step-by-step methods to bypass it, even if your machine cannot access the internet. Why Does This Error Occur?
For advanced users, the most direct approach is to manually import the missing root certificates. If you know the specific certificate the installer is looking for (e.g., the "GlobalSign Root CA - R3"), you can download it from a trusted source (like Globalsign's website) and add it to your system.
Right-click the certificate file and select .
Delete the corrupted certificate store cache: