---
title: Installing the Lumiun CA Certificate
description: How to install the Lumiun CA Certificate so that the lock page is displayed on websites with a secure connection (HTTPS).
---

[Skip to content](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#main-content)

- [English - United States](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate)
- [Português - Brasil](https://help.lumiun.com/pt-br/hc/como-instalar-o-certificado-ca-lumiun)

English - United States

Show submenu for translations

[Request Support](https://help.lumiun.com/en-us/hc/kb-tickets/new?hsLang=en-us) [My Tickets](https://tickets.lumiun.com/tickets?hsLang=en-us)

[![logo lumiundns](https://help.lumiun.com/hubfs/lumiundns-x-color.svg)](https://help.lumiun.com/?hsLang=en-us)

Open main navigation

Close main navigation

- - [English - United States](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate)
    - [Português - Brasil](https://help.lumiun.com/pt-br/hc/como-instalar-o-certificado-ca-lumiun)

  English - United States
  
  Show submenu for translations
- [Request Support](https://help.lumiun.com/en-us/hc/kb-tickets/new)
- [My Tickets](https://tickets.lumiun.com/tickets)
- [Go to Dashboard](https://dns.lumiun.com/)

[Go to Dashboard](https://dns.lumiun.com/)

 How can we help?

- There are no suggestions because the search field is empty.

1. [Lumiun DNS Help Center](https://help.lumiun.com/en-us/hc?hsLang=en-us)
2. [Integrations](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us)

# Installing the Lumiun CA Certificate

## How to install the Lumiun CA Certificate so that the lock page is displayed on websites with a secure connection (HTTPS).

The installation of the Lumiun Certificate Authority (CA) certificate is necessary for users to correctly view Lumiun DNS blocking pages when accessing websites with a secure connection (HTTPS).

**About the Lumiun CA Certificate**

- Certificate file: [Lumiun CA](https://ldns.io/LumiunCA.crt)
- Validity: until May 29, 2043.

---

### **How to install the Lumiun CA certificate**

**Installation guides by system**

1. [Windows via PowerShell or Script](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#windows-powershell)
2. [Windows via graphical interface](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#windows-interface)
3. [Windows via Group Policy (AD)](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#windows-gpo)
4. [Firefox on Windows](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#firefox)
5. [iPhone / iOS](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#iphone)
6. [Android](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#android)
7. [Macbook / macOS](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#macOS)

---

#### **Windows via PowerShell or Script**

1. Open **PowerShell** as an **administrator**.
2. Paste and run the commands below:
   
   ```
   $file = "C:\Windows\Temp\LumiunCA.crt"(New-Object System.Net.WebClient).DownloadFile("https://ldns.io/LumiunCA.crt", $file)certutil -addstore -enterprise -f "Root" $file
   ```

---

#### **Windows via graphical interface**

1. Double-click the downloaded file to open the certificate window.
2. Click Install Certificate.  
   ![](https://storage.crisp.chat/users/helpdesk/website/74ce62ddaaf4e400/image_1z12wki.png)
3. Select the Current User option and click Next.  
   ![](https://storage.crisp.chat/users/helpdesk/website/74ce62ddaaf4e400/image_1assdlk.png)
4. Select **Place all certificates in the following store** and click **Browse**. Select **Trusted Root Certification Authorities** and confirm. Click **Next**.  
   ![](https://storage.crisp.chat/users/helpdesk/website/74ce62ddaaf4e400/image_1xnzb8n.png)
5. Click **Finish** to confirm the installation.

---

#### **Windows via Group Policy (AD)**

- To distribute the certificate via GPO, follow Microsoft's official guidance: [Microsoft Guide - Distribute certificates via GPO.](https://learn.microsoft.com/en-us/windows-server/identity/ad-fs/deployment/distribute-certificates-to-client-computers-by-using-group-policy)

---

#### **Firefox on Windows**

1. Install the certificate on Windows by following [these steps](https://help.lumiun.com/en-us/hc/installing-the-lumiun-ca-certificate#windows-interface).
2. Open Command Prompt or PowerShell as an administrator and run the following command.
   
   ```
   echo 'pref("security.enterprise_roots.enabled", true);' > "C:\Program Files\Mozilla Firefox\defaults\pref\roots.js"
   ```
3. Restart Firefox for the setting to take effect.

---

#### **iPhone / iOS**

1. Go to [ldns.io/LumiunCA.crt](https://ldns.io/LumiunCA.crt) using **Safari**.
2. When asked if you want to allow the profile to be downloaded, tap **Allow**.
3. Go to **Settings** → **General** → **VPN**, **DNS**, **and Device Management** → **Lumiun Root CA.**
4. Tap **Install** (enter your unlock code).
5. A warning will appear, click Install and then Install again.
6. Go to **Settings** → **General** → **About** → **Trusted Certificates** and enable trust in the **Lumiun Root CA** certificate.

---

#### **Android**

1. Access [ldns.io/LumiunCA.crt](https://ldns.io/LumiunCA.crt) using **Chrome**.
2. After downloading, Android will ask for a name and purpose for the certificate.
3. Fill in: 
     - **Name:** Lumiun CA
     - **Used for:** VPN and applications

---

#### **Macbook / macOS**

1. Open **Terminal** (Launchpad → type “Terminal”).
2. Run the commands below.
   
   ```
   curl -o /tmp/LumiunCA.crt https://ldns.io/LumiunCA.crtsudo security add-trusted-cert -d -p ssl -p basic -r trustRoot -k /Library/Keychains/System.keychain /tmp/LumiunCA.crt
   ```
3. Enter your user password and authorize the change in trust settings.

- [Integrations](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#main-content)

    - [Routers](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#routers)
    - [Firewalls](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#firewalls)
    - [Servers](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#servers)
    - [Computers](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#computers)
    - [Smartphones](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#smartphones)
    - [Browser](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#browser)
    - [General](https://help.lumiun.com/en-us/hc/integrations?hsLang=en-us#general)
- [Policies and Filters](https://help.lumiun.com/en-us/hc/policies-and-filters?hsLang=en-us)
- [Networks and Sites](https://help.lumiun.com/en-us/hc/networks-and-sites?hsLang=en-us)
- [Reports](https://help.lumiun.com/en-us/hc/reports?hsLang=en-us)
- [Your Account](https://help.lumiun.com/en-us/hc/your-account?hsLang=en-us#main-content)

    - [Plans and Billing](https://help.lumiun.com/en-us/hc/your-account?hsLang=en-us#plans-and-billing)
- [Partners](https://help.lumiun.com/en-us/hc/partners?hsLang=en-us)
- [FAQ](https://help.lumiun.com/en-us/hc/faq?hsLang=en-us#main-content)

    - [General](https://help.lumiun.com/en-us/hc/faq?hsLang=en-us#general)
    - [pfSense](https://help.lumiun.com/en-us/hc/faq?hsLang=en-us#pfsense)

[![logo lumiun dns](https://help.lumiun.com/hubfs/lumiun-dns.svg "logo lumiun dns")](https://help2.lumiun.com/?hsLang=en-us)

<https://www.linkedin.com/company/lumiuntecnologia> <https://www.instagram.com/lumiuntecnologia> <https://www.facebook.com/LumiunTecnologia>

Copyright © 2026, Lumiun