Re: How to get server certificate of IIS 5.x in programatic way?

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Egbert Nierop \(MVP for IIS\) (egbert_nierop_at_nospam.invalid)
Date: 02/24/05


Date: Thu, 24 Feb 2005 11:10:43 +0100


"nealboy" <nealboyzdn@hotmail.com> wrote in message
news:uj5hKviGFHA.2592@TK2MSFTNGP10.phx.gbl...
> Thanks for your reply.But I think it isn't very helpful to my problem as I
> don't know which cert is set to IIS Server in Certlist brought by
> CAPICOM.

It would have been easy. :)
>From the IIS metabase, you select from W3SVC/1/SSLCertHash

And you enumerate the certificates using the script I pointed you at. The
script must be modified to enum the 'MY' store (that is local
computer/Personal store)
>From the certificates, the 'Thumbprint' property, must match the SSLCertHash
property...
And there you go, you'll have the IIS certificate.

> I had take an alternative way to solve it ang thank you again
> Anyway
> "Egbert Nierop (MVP for IIS)" <egbert_nierop@nospam.invalid> ????
> news:ujtW51YGFHA.624@TK2MSFTNGP15.phx.gbl...
>> "nealboy" <nealboyzdn@hotmail.com> wrote in message
>> news:%232i31pvFFHA.2876@TK2MSFTNGP12.phx.gbl...
>> > I'm very sorry about disturbing you again but I can't find the script
> you
>> > indicated in the list after browsing.
>> > Look for your reply and help
>>
>>
>> http://www.google.com/search?hl=nl&q=CertLister.vbs
>>
>>
>
>



Relevant Pages

  • Re: PKI - Manual Enroll - Auto Renewal - Possible?
    ... to get really fancy you could also script the renewal. ... '* Enumerate certificates with day left for expiry ... Set Store = CreateObject ... WScript.Echo "Days to expiry " & ...
    (microsoft.public.security)
  • Re: Import Certificates to user account in AD
    ... Easy script, which you can easily ... It modifies "altSecurityIdentities" attribute in user account object in AD. ... > The hardest part is having a bulk source of the binary DER-encoded ... > certificates for each user available. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Bypass Security Warnings in Access Runtime
    ... But certificates can also stop working & the prompts ... For example I *think* that modifying a query will ... I've also wondered whether *compiling* a query (ie. when it is run the ... >> by that script. ...
    (microsoft.public.access.security)
  • Re: Bulk certificate enrollment to a stand-alone Microsoft CA
    ... Does anybody have more info (documentation) on how to ... write such a script and where i can find the "xenroll.dll"? ... >> manage around 3.000.000 certificates with that CA, ...
    (microsoft.public.win2000.security)
  • RE: Uninstall Script
    ... "urkec" wrote: ... I also tried to run the List Installed Software script to see if I could ... which is the For Loop line. ... at least, 200 workstations, but I can't uninstall those certificates. ...
    (microsoft.public.windows.server.scripting)