Downloading the public root certificates
Click here to download the TNG RSA CA 2025 public root certificate.
Click here to download the TNG EC CA 2025 public root certificate.
Installing the public root certificate in Windows using PowerShell
To install the TNG EC CA 2025 public root certificate in Windows using PowerShell, do the following:
- Hover your mouse above the code below and click the Copy button that appears. This will put the PowerShell script in your clipboard buffer.
- Open a PowerShell console window. Depending on your system, you may need to use the Run As Administrator option.
- In the PowerShell console window, right click to paste the code into the window. The code will automatically execute, downloading and installin the public root certificate.
- Once complete, you should see a "Done!!!" message.
- Close the PowerShell console.
- The TNG EC CA 2025 certificate authority has now been succesfully installed in your computers Trusted Certificate Authories certificate store.
try {
Function Download-And-Install-Certificate($certUrl, $certFile, $certDescription) {
try {
"Downloading $certDescription certificate..."
$start_time = Get-Date
Invoke-WebRequest -Uri $certUrl -OutFile $certFile
"Time taken: $((Get-Date).Subtract($start_time).Seconds) second(s)"
}
catch {
Write-Warning -Message "An error occurred downloading the file: ${$_}"
}
try {
"Importing $certDescription from file $certFile to LocalMachine Trusted Roots..."
Import-Certificate -FilePath "$certFile" -CertStoreLocation Cert:\LocalMachine\Root
"Cleaning up..."
Remove-Item "$certFile"
"Done!!!"
}
catch {
Write-Warning -Message "An error occurred importing the certificate: $_"
}
''
''
''
}
Download-And-Install-Certificate 'https://ca.tng73.com/pki/tng-rsa-ca-2025.crt' 'tng-rsa-ca-2025.crt' 'TNG RSA CA 2025'
Download-And-Install-Certificate 'https://ca.tng73.com/pki/tng-ec-ca-2025.crt' 'tng-ec-ca-2025.crt' 'TNG EC CA 2025'
}
catch {
Write-Warming -Message "An unexpected error occurred!!!"
}
Installing the public root certificate on Ubuntu
sudo apt-get install -y ca-certificates && \
wget https://ca.tng73.com/pki/tng-ec-ca-2025.crt && \
wget https://ca.tng73.com/pki/tng-rsa-ca-2025.crt && \
sudo cp tng-ec-ca-2025.crt /usr/local/share/ca-certificates && \
sudo cp tng-rsa-ca-2025.crt /usr/local/share/ca-certificates && \
sudo update-ca-certificates
Installing the public root certificate on Ubuntu for use by Chrome/Chromium/Edge
Chrome/Chromium/Edge use a keystore in ~/.pki. They do not use the system certificate store. You need the certutil utility program to import the root certificate into the keystore. This is a per-user keystore.
sudo apt install libnss3-tools && \
wget https://ca.tng73.com/pki/tng-ec-ca-2025.crt && \
wget https://ca.tng73.com/pki/tng-rsa-ca-2025.crt && \
certutil -d sql:$HOME/.pki/nssdb -A -t "CT,C,C" -n "TNG EC CA 2025" -i tng-ec-ca-2025.crt && \
certutil -d sql:$HOME/.pki/nssdb -A -t "CT,C,C" -n "TNG RSA CA 2025" -i tng-rsa-ca-2025.crt && \
certutil -d sql:$HOME/.pki/nssdb -L
Installing the public root certificate on a Mikrotik router
{
/tool fetch url=http://ca.tng73.com/pki/tng-ec-ca-2025.crt
:delay 1
/certificate import file-name=tng-ec-ca-2025.crt passphrase=""
/certificate set [find where common-name="TNG EC CA 2025"] name="TNG EC CA 2025"
/file remove tng-ec-ca-2025.crt
}
{
/tool fetch url=http://ca.tng73.com/pki/tng-rsa-ca-2025.crt
:delay 1
/certificate import file-name=tng-rsa-ca-2025.crt passphrase=""
/certificate set [find where common-name="TNG RSA CA 2025"] name="TNG RSA CA 2025"
/file remove tng-rsa-ca-2025.crt
}