Objective
Set up a GPO to force Firefox to use the Windows certificate store.
Steps
1. Use theADMX templateprovided by Mozilla.
DOWNLOAD THE LATEST UPDATED VERSION
2. Unzip the archive.


3. Copier les deux fichiers firefox.admx et mozilla.admx, ainsi que le répertoire fr-FR contenant les fichiers firefox.adml et mozilla.adml dans votre répertoire C:\Windows\SYSVOL\sysvol\<votre nom de domaine>\Policies\PolicyDefinitions.


4. Create a user GPO dedicated to Firefox.
4.1 Open the "Group Policy Management" tool.
4.2 Create and name a GPO object.

4.3 Edit the "Firefox" GPO, then Certificate Settings.


4.4 Enableimporting enterprise root certificates.

Result
1. Force the GPO on a user workstation to verify that it is applied correctly:gpupdate /forceor possiblyrestart the user session.
2. Check that the settings are correct in the Firefox browser. Open Firefox, enter about:config in the address bar, and accept any warnings if necessary. If everything went well, thesecurity.entreprise_roots.enabledoption should be grayed out and set totrue.
