Unknown certificate in signed email: Is manual export/import the intended workflow?

Hi there,

I recently received a signed email in KMail. The signature was reported as valid, but KMail displayed the following message: (translated from german)

The signature was created with an unknown certificate.

The certificate fingerprint was shown, and since I trust the sender and the certificate chain appeared to be valid, I wanted to import the certificate into my local certificate store.

At first I could not find an obvious “Import Certificate” action in KMail. After some experimentation, I found the following workflow:

  1. Click on the displayed certificate fingerprint.
  2. Select Export.
  3. A window opens showing the certificate contents as text.
  4. Manually select and copy the entire certificate text.
  5. Paste it into a new file and save it with a .asc extension (for example certificate.asc).
  6. Open Kleopatra and import that file.

This successfully imported the certificate.

My question is: Is this the intended or recommended workflow for this situation?

Is there a simpler way to permanently import a certificate from a signed S/MIME email in KMail, or did I overlook an existing menu option?

greetings