Two certificates with isa server

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: ISA_HELP (anonymous_at_discussions.microsoft.com)
Date: 03/01/04


Date: Mon, 1 Mar 2004 08:58:48 -0800

Hi everyone,

We plan to use ISA 2000 as a firewall in our organization
and we also wish to use Web publishing to publish two web
sites. The two sites will be hosted in the same IIS
server. The ISA server is installed in another server.
We have defined one IP address on the public interface of
the ISA server. The two websites will be securely
accessed by https. We have two certificates, one for
each of the web site. We configured one of the two sites
with his certificate and at that time, everything works
well. However, we are not able to define a second
certificate on the listener. When we go tho the
configuration tab of the listener we can choose one of
the two certificates but not the two ones
simultaneously. We also defined two destination sets to
route each request to the right web site.

I think that we shall use two IP addresses on the
external Interface of the ISA server, to have two
listeners and to allow the use of the two certificates
simultaneously. Am I Right or if it exists another
solution to use two certificates with one IP address and
one listener configured on the ISA server to publish two
web sites using SSL ?

Thank you for your help.



Relevant Pages

  • ISA 2004 HTTP Listener works but when switching to HTTPS it doesnt
    ... The listener is listening on both HTTP and HTTPS at the moment. ... I have ensured the same certificates are installed on the ISA server as ...
    (microsoft.public.isa)
  • Re: Publish additional SSL site - run into problems with Web Listener
    ... have to give the ISA server additional IP addresses in the DMZ? ... Sounds like you have configured each listener with the same IP. ... On the 'To' tab of the rule for the other site you can configure the name of the internal server that hosts it (add it to hosts file on ISA svr). ... Of course you will need an external IP for each site pointing to a DMZ IP and will need host records created externally pointing to the external IPs so can be resolved from the net. ...
    (microsoft.public.isa.publishing)
  • Re: HTTPS Listener für ActiveSync und CA
    ... MVP ISA Server ... Mailserver besitzt und zum anderen einen Web Listener für die CA, ... HTTPS Web Listeners kommt die Fehlermeldung: ...
    (microsoft.public.de.german.isaserver)
  • Re: Problems transplanting an ISA server
    ... only issue that I had was with SSL certificates. ... Publishing Multiple Web Sites using a Wildcard Certificate in ISA Server 2004 ... Import the settings config backup. ...
    (microsoft.public.isa)
  • Re: two listeners for https isa2004
    ... create another listener on the new IP which will be used to publish the OWA ... Publishing Multiple Web Sites using a Wildcard Certificate in ISA Server ... > possible because the HTTPS listener on ISA is redirected to IIS for CSG, ...
    (microsoft.public.isa)