Can’t find installed certificate on device after upgrading to Android 12 or later

Last updated June 23rd, 2025

Categories:

Environment

  • Android Enterprise
  • Devices upgraded to Android 12 OS or later

Overview

You may notice an issue where Google Chrome and other apps on your device can’t find an installed certificate after the device OS was upgraded to Android 12 or later. However, when checking the device User credentials settings, the certificate still exists.

Cause

When an UEM installs keys and certificates on a device running Android 11 or earlier, they are stored in Samsung Knox databases. When the device is upgraded to Android 12 or later, an error occurs when migrating the existing user-installed certificates, marking them hidden to the Certificate Viewer app and unusable to other apps.

This error also occurs when upgrading from Android 12 to Android 13 if the certificate was installed on a device running Android 11 or earlier.

Workaround

To resolve this issue after upgrading your device OS, you can re-install the certificate with your UEM. If the certificate still can’t be found, you can re-enroll your device into your UEM before re-installing the certificate.

Is this page helpful?