Re: How to enable SSL on IIS 6.0

From: Miha Pihler [MVP] (mihap-news_at_atlantis.si)
Date: 11/10/05

  • Next message: Big Cone: "SSL Login web page"
    Date: Thu, 10 Nov 2005 22:32:21 +0100
    
    

    Hi,

    To create a request open IIS and right click a site that you want to protect
    with SSL (e.g. Default Web Site). Now click on Directory Security and on the
    bottom of the window click on Server certificate. Now follow the wizard to
    create the request.

    Once you have the request sign it on your CA server. You will get a digital
    certificate (.cer file). Take it back to same IIS server where you created
    the request and reopen IIS console. Again click on Directory Security and
    again Server Certificate. Follow the wizard where it says "Process the
    pending request" and tell the wizard where you stored .cer file.

    Now you should have SSL protected site...

    -- 
    Mike
    Microsoft MVP - Windows Security
    "Che" <Che@discussions.microsoft.com> wrote in message 
    news:3B35F6E3-DA41-48B5-928C-2F8DB1603695@microsoft.com...
    >I am trying to setup a Windows 2003 workgroup server for Citrix 
    >Presentation
    > Server v4.0. I have installed "Certificate Service" and I am wondering how 
    > I
    > can request a server certificate and use the same server to authorized the
    > certificate?
    >
    > Thanks
    > Che 
    

  • Next message: Big Cone: "SSL Login web page"

    Relevant Pages

    • RE: when to specify virtual server in ssl cert request
      ... When you submit a request for a Server certificate via http: ... Virtual Name of the Server, ...
      (microsoft.public.sqlserver.security)
    • Re: Trying to secure OWA with SSL
      ... Went to Directory Security on Default Web Site ... New certificate, Prepare request now but send later, default bit length, ... You havet to add the Web Server Certificate on the site level, ...
      (microsoft.public.inetserver.iis.security)
    • [REVS] NTLM HTTP Authentication is Insecure By Design
      ... in front of a web server, and that proxy server shares a single TCP ... These are attacks that make use of non-RFC HTTP requests (HTTP Request ... the authentication is associated with the ...
      (Securiteam)
    • [NT] 04WebServer Multiple Vulnerabilities (CSS, Log File Injection, AUX DoS)
      ... 04WebServer is a HTTP server developed by Soft3304 for Windows platforms. ... Characters into Log File ... filtering on the request URL before writing it into the log file. ... following HTTP request, when submitted to a vulnerable 04WebServer, will ...
      (Securiteam)
    • Re: breaking the model
      ... > The forms data then is in the Request object. ... HTTP Request; in this case, the form POST Request from the Page. ... client and server. ...
      (microsoft.public.dotnet.framework.aspnet)

  • Quantcast