Read the full knowledgebase articles and know how to generate a CSR and install a Certificate in IIS 7.
To Generate a Certificate Signing Request (CSR) — Microsoft IIS 7
- From Start, select Administrative Tools, and then select Internet Information Services (IIS) Manager (IIS must be installed through Server Manager - Install Roles and Features).
- In the Connections panel on the left, click the server name for which you want to generate the CSR.
- In the middle panel, double-click Server Certificates.
- In the Actions panel on the right, click Create Certificate Request....
- Enter the following Certificate Properties, and then click Next:
NOTE: The following characters are not accepted when entering information: < > ~ ! @ # $ % ^ * / \ ( ) ? &
- For Cryptographic service provider, select Microsoft RSA SChannel Cryptographic Provider .
- For Bit length, select 2048 or higher, and then click Next.
- Click …, enter the location and file name for your CSR, and then click Finish.
Once you have been supplied with a certificate from your provider or from us, see: https://www.vpsblocks.com.au/support/Knowledgebase/Article/View/143/0/purchase-an-ssl-certificate
Then you need to install it.
Installing the certificate
Then, to install the primary SSL certificate, you must complete the pending request, and then bind the certificate to your website.
To Install an SSL Certificate in Microsoft IIS 7
- Click Start, mouse-over Administrative Tools, and then click Internet Services Manager.
- In the Internet Information Services (IIS) Manager window, select your server.
- Scroll to the bottom, and then double-click Server Certificates.
- From the Actions panel on the right, click Complete Certificate Request....
- To locate your certificate file, click ....
- In the Open window, select *.* as your file name extension, select your certificate (it might be saved as a .txt, .cer, or .crt), and then click Open.
- In the Complete Certificate Request window, enter a Friendly name for the certificate file, and then click OK.
NOTE: For Wildcard SSL certificates make sure your Friendly Name to matches your Common Name (i.e. *.domain.com).
- In the Internet Information Services (IIS) Manager window, select the name of the server where you installed the certificate.
- Click + beside Sites, select the site to secure with the SSL certificate.
- In the Actions panel on the right, click Bindings....
- Click Add....
- In the Add Site Binding window:
- For Type, select https.
- For IP address, select All Unassigned, or the IP address of the site.
- For Port, type 443.
- For SSL Certificate, select the SSL certificate you just installed, and then click OK.
- Close the Site Bindings window.
- Close the Internet Information Services (IIS) Manager window. Your SSL certificate installation is complete.
To Install an Intermediate Certificate in Microsoft IIS 7
- Click Start, and then click Run....
- Type mmc, and then click OK. The Microsoft Management Console (Console) window opens.
- In the Console1 window, click the File menu, and then select Add/Remove Snap-in.
- In the Add or Remove Snap-in window, select Certificates, and then click Add.
- In the Certificates snap-in window, select Computer Account, and then click Next.
- In the Select Computer window, select Local Computer, and then click Finish.
- In the Add or Remove Snap-in window, click OK.
- In the Console1 window, click + to expand the folder.
- Right-click Intermediate Certification Authorities, mouse-over All Tasks, and then click Import.
- In the Certificate Import Wizard window, click Next.
- Click Browse to find the intermediate certificate file.
- In the Open window, change the file extension filter to PKCS #7 Certificates (*.spc;*.p7b), select the *_iis_intermediates.p7bfile, and then click Open.
NOTE: Do not install your Leaf Certificate in this area. Doing so removes your certificate from the list, and you must reinstall to correct the problem.
- In the Certificate Import Wizard window, click Next.
- Select Place all certificates in the following store, and then click Browse.
- In the Select Certificate Store window, select Intermediate Certification Authorities, and then click OK.
- In the Certificate Import Wizard window, click Next.
- Click Finish.
- Click OK.
- Close the Console 1 window, and then click No to remove the console settings.
|