RE: IIS Certifcate for Default Website is not same as what is on websi

Tech-Archive recommends: Fix windows errors by optimizing your registry



Hi,

Thank you for posting here.

I understand that you obtain a commercial certificate, and you want to
replace the self-signed certificate on a SBS Server, if I'm off base,
please feel free to let me know.

To replace the certificate, I suggest that you take a look at Option B -
Configuring Third-Party Certificates at page 15 in following whitepaper:

Deploying Windows Mobile 5.0 with Windows Small Business Server 2003

http://www.microsoft.com/downloads/details.aspx?FamilyID=8be70d72-1e5a-4128-
a30c-dafeeb43544d&displaylang=en

Note: Although this whitepaper applies for deploy Mobile Device, however
this section addresses your concern properly.

Hope this helps, if anything unclear, please do not hesitate to let me know.

Have a nice day!

Best Regards,

Chace Zhang (MSFT)

Microsoft CSS Online Newsgroup Support

Get Secure! - www.microsoft.com/security

=====================================================
This newsgroup only focuses on Exchange technical issues. If you have
issues regarding other Microsoft products, you'd better post in the
corresponding newsgroups so that they can be resolved in an efficient and
timely manner. You can locate the newsgroup here:
http://www.microsoft.com/communities/newsgroups/en-us/default.aspx

When opening a new thread via the web interface, we recommend you check the
"Notify me of replies" box to receive e-mail notifications when there are
any updates in your thread. When responding to posts via your newsreader,
please "Reply to Group" so that others may learn and benefit from your
issue.

Microsoft engineers can only focus on one issue per thread. Although we
provide other information for your reference, we recommend you post
different incidents in different threads to keep the thread clean. In doing
so, it will ensure your issues are resolved in a timely manner.

For urgent issues, you may want to contact Microsoft CSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Any input or comments in this thread are highly appreciated.

=====================================================

This posting is provided "AS IS" with no warranties, and confers no rights.

--------------------
| Thread-Topic: IIS Certifcate for Default Website is not same as what is
on websi
| thread-index: Accq9dmbNO8PJdiIRqO56g48ZyDakg==
| X-WBNR-Posting-Host: 70.17.255.99
| From: =?Utf-8?B?Um9iZXJ0IChBQVQp?= <wavemaster@xxxxxxxxxxxxxx>
| Subject: IIS Certifcate for Default Website is not same as what is on
websi
| Date: Thu, 28 Dec 2006 19:03:00 -0800
| Lines: 23
| Message-ID: <2B32AC3D-C764-4D8C-A487-55A8E4415CFD@xxxxxxxxxxxxx>
| MIME-Version: 1.0
| Content-Type: text/plain;
| charset="Utf-8"
| Content-Transfer-Encoding: 7bit
| X-Newsreader: Microsoft CDO for Windows 2000
| Content-Class: urn:content-classes:message
| Importance: normal
| Priority: normal
| X-MimeOLE: Produced By Microsoft MimeOLE V6.00.3790.2757
| Newsgroups: microsoft.public.exchange.connectivity
| Path: TK2MSFTNGHUB02.phx.gbl
| Xref: TK2MSFTNGHUB02.phx.gbl microsoft.public.exchange.connectivity:242
| NNTP-Posting-Host: tk2msftsbfm01.phx.gbl 10.40.244.148
| X-Tomcat-NG: microsoft.public.exchange.connectivity
|
| SBS2003 Premium
| I have issues with trying to get a Thawte signed certificate to be
recognized.
| I've managed to get a CSR (cert. signing request) off to Thawte and in
| return they sent me the certificate as well as a root certificate.
| Loaded the certificate in inetmgr in the default website.
| Added the root certificate through certmgr as a trusted root certificate.
| All ok.
| Now when I connect to my website name.domain.com/exchange it shows my old
| self signed certifcate and then I get a error message "The certificate
chain
| was issued by an authority that is not trusted. (-2146893019)".
| How can the certificate in IIS be different than what gets shown on a
| webpage??
|
| So, I think maybe I need to run "Repair Email/Internet Connection" so I
can
| put in the new certificate. Well, then it complains "no certificate has
been
| requested for the default website in IIS. You must first create a request
for
| a certificate by using the Web Server Certificate Wizard in IIS. You can
then
| run this wizard again to configure the default website site to use a
trusted
| certificate.
|
| What went wrong here? I am at a loss.
|
| Robert
|

.



Relevant Pages

  • Re: RPC over HTTP
    ... Click Services tab and select Hide All Microsoft Services and Disable ... HTTP" option checked? ... Please collect the IIS log and IIS metabase for analyze: ... <Also we do not receive a Certificate error when we visit the OWA webpage. ...
    (microsoft.public.windows.server.sbs)
  • RE: ssl certificate error on public folders
    ... "Finish" to remove the certificate. ... Restart the IIS Admin service in the services mmc. ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • RE: ssl certificate error on public folders
    ... "Finish" to remove the certificate. ... Restart the IIS Admin service in the services mmc. ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Re: Cant access public folder properties
    ... As the re-injection of the certificate in the IIS does not work for this ... I think we actually need to reconfigure the certificate in the CEICW ... Microsoft CSS Online Newsgroup Support ... This newsgroup only focuses on SBS technical issues. ...
    (microsoft.public.windows.server.sbs)
  • Disable or Control certificate auto-import?
    ... I'm working with an IIS 6.0 website running on Windows 2003 Server. ... It's normally used as an internal website, but we now have a small group ... that I could export the certificate, and then get both internal and external ...
    (microsoft.public.inetserver.iis.security)