Windows Server 2012: Create CSR & Install SSL Certificate

Use the DigiCert® Certificate Utility for Windows to create a CSR and install your SSL certificate on Windows Server 2012

These instructions explain how to use the DigiCert Certificate Utility for Windows with IIS 8 and IIS 8.5 to create your CSR, to install your SSL certificate, and to configure your Windows Server 2012 to use the certificate .
DigiCert Certificate Utility for Windows
For a childlike means to create your CSRs ( Certificate Signing Requests ) and install and manage your SSL certificates, we recommend that you use the DigiCert Certificate Utility. For more data about our utility, see DigiCert Certificate Utility .
Use the instructions on this page to create your certificate signing request (CSR) and to install and configure your SSL certificate.
If you prefer not to use the DigiCert Utility, or for some reason can not use the utility, see IIS 8 and IIS 8.5 : Create CSR and Install SSL Certificate.

Step 1: Create Your CSR on Windows Server 2012 with the DigiCert Utility

The DigiCert Certificate Utility for Windows streamlines the CSR initiation process by providing comfortable, one-click CSR creation and certificate installation .

How to Create Your CSR with the DigiCert Utility

  1. On your Windows Server 2012, download and save the DigiCert Certificate Utility feasible ( DigiCertUtil.exe ) .
  2. Open the DigiCert Certificate Utility ( double-click DigiCertUtil ) .
  3. In the DigiCert Certificate Utility for Windows©, click SSL ( gold lock ), and then, click Create CSR .
    DigiCert Utility Create CSR
  4. On the Create CSR foliate, provide the surveil information below and then click Generate .

    Certificate Type: Select SSL.
    Common Name: The fully-qualified domain name (FQDN) (e.g., www.example.com).
    Subject Alternative Names: If you are requesting a Multi-Domain (SAN) Certificate, enter any SANs that you want to include
    (e.g., www.example.com, www.example2.com, and www.example3.net).
    Organization: Your company’s legally registered name (e.g., YourCompany, Inc.).
    Department: The name of your department within the organization. This entry will usually be listed as “IT”, “Web Security”, or is simply left blank.
    City: The city where your company is legally located.
    State: Use the drop-down list to select the state where your company is legally located.
    Note: If your company is located outside the US, you can type the applicable name in the box.
    Country: Use the drop-down list to select the country where your company is legally located.
    Key Size: In the drop-down list, select 2048 (unless you have a specific reason for using a larger bit length).
    Provider: In the drop-down list, select Microsoft RSA SChannel Cryptographic Provider (unless you have a specific cryptographic provider).

    Enter CSR Details

  5. On DigiCert Certificate Utility for Windows© – Create CSR page, do one of the stick to :

    Click Copy CSR. Copies the certificate contents to the clipboard. Use this option if you are ready to paste the CSR into the DigiCert order form.
    Note: Because the DigiCert Certificate Utility does not store CSRs, we recommend you paste the CSR into a text editor (such as Notepad) when using this option. If you close the CSR page and accidentally overwrite the clipboard contents without doing this, you will need to generate a new CSR.
    Click Save to File. Saves the CSR as a .txt file to the Windows Server 2012. (We recommend using this option.)

    Save or Copy CSR Contents

  6. Click Close .
  7. If you saved the CSR to a file, open the CSR file using a text editor program ( such as Notepad ). then, copy the text ( including the —–BEGIN NEW CERTIFICATE REQUEST—– and —–END NEW CERTIFICATE REQUEST—– tags ), and paste it into the DigiCert rate human body .
    ready to ordering your SSL certificate
    Buy Now
    Learn More
  8. After receiving your SSL certificate from DigiCert, you can use the DigiCert Certificate Utility to install it .

Step 2: Install Your SSL Certificate on Windows Server 2012 Using the DigiCert Utility

If you haven ’ t created your CSR with the DigiCert Certificate Utility and ordered your SSL security, see Windows Server 2012 : Creating Your CSR with the DigiCert Utility .
After DigiCert validates your order and issues your SSL certificate, you can use the DigiCert Certificate Utility to install the certificate charge to your Windows waiter 2012. then you can use IIS 8 or IIS 8.5 to configure the server to use it .
To install your SSL certificate on your Windows Server 2012, complete the steps below.

  1. Import your SSL security to your Windows server 2012 using the DigiCert Certificate Utility .
  2. Configure your Windows Server 2012 to use the SSL certificate using IIS 8 or IIS 8.5 .

i. Import Your SSL Certificate Using the DigiCert Certificate Utility

After DigiCert issues your SSL certificate, you can use the DigiCert Certificate Utility to install the certificate file to your Windows waiter 2012 .

Microsoft Certificate Store Note:
When you use the DigiCert Certificate Utility to import/install your SSL certificates, it will place the certificates in the Personal storehouse alternatively of the Web Hosting store. If you have less than 30 certificates, this will not be a problem. however, if you are managing 30 or more certificates, you will need to move your certificates to the Web Hosting storehouse, which was designed for a greater number of certificates. See Move a Certificate from the Personal Store to the Web Hosting Certificate Store .

How to Import an SSL Certificate to Your Windows Server 2012

  1. On the Windows 2012 waiter, where you created the CSR, extract the contents of the ZIP file you received from DigiCert ( for example, your_domain_com.cer ) to the folder where you saved the DigiCert Certificate Utility feasible ( DigiCertUtil.exe ) .
  2. Open the DigiCert Certificate Utility ( double-click DigiCertUtil ) .
  3. In the DigiCert Certificate Utility for Windows©, pawl SSL ( gold lock ) and then, click Import .
    Import an SSL Certificate
  4. In the Certificate Import charming, click Browse to locate the .cer certificate file you received from DigiCert ( for example, your_domain_com.cer ), and cluck Open .
    Certificate Import wizard
  5. Click Next
  6. In the Enter a new friendly name or you can accept the default box, type a friendly mention for the security .

    Note: The friendly name is not part of the certificate ; alternatively, it is used to identify the certificate. We recommend that you add the issue CA ( for example, DigiCert ) and the exhalation date to the end of your friendly diagnose ; for example, yoursite-digicert- ( termination date ). Doing this helps identify the issuer and exhalation date for each security and besides helps spot multiple certificates with the like sphere name .

    Certificate Import wizard

  7. To import the SSL certificate to your server, click Finish .
  8. You should receive a message that the certificate was successfully imported, and you should now see your SSL security in the DigiCert Certificate Utility for Windows© .
    Import an SSL Certificate
  9. ( Optional ) Repeat the process as needed for each extra SSL certificate .
  10. now that you ‘ve successfully installed your SSL security, you need to assign the security to the appropriate web site .

ii. Configure the Server to Use Your SSL Certificate Using IIS 8 or IIS 8.5

After importing your SSL security to your Windows Server 2012, you must configure IIS to use the newly imported certificate to secure your web site .

  • (Single Certificate) How to configure the server to use your SSL certificate
  • (Multiple Certificates) How to configure the server to use your SSL certificates using SNI

(Single Certificate) How to configure the server to use your SSL certificate

  1. On the Windows Server 2012 where you imported your SSL certificate with the DigiCert Certificate Utility, open Internet information Services ( IIS ) Manager .
    From the Start screen, find Internet Information Services (IIS) Manager and open it .
  2. In Internet Information Services (IIS) Manager, in the Connections pane, expand the name of the server on which the certificate was installed. then expand Sites and click the site you want to secure using the SSL certificate .
    IIS 8 Web Site Home Page Bindings
  3. On the web site Home page, in the Actions menu ( right pane ), click Bindings .
  4. In the Site Bindings window, click Add .
    IIS 8 Site Bindings Window (Unconfigured)
  5. In the Add Site Binding window, do the pursue and then click OK .

    Type: In the drop-down list, select https.
    IP address: In the drop-down list, select the IP address of the site or select All Unassigned.
    Port: Type 443. (SSL uses port 443 to secure traffic.)
    SSL certificate: In the drop-down list, select your new SSL certificate (e.g., yourdomain.com).

    IIS 8 Add Site Binding Dialog

  6. Your SSL certificate is now installed, and the web site is configured to accept secure connections .
    IIS Site Bindings Window (Configured)

(Multiple Certificates) How to install your SSL certificates and configure the server to use them using SNI

If you have not imported all your SSL certificates, see Import Your SSL Certificate Using the DigiCert Certificate Utility .
These instructions explain how to install multiple SSL certificates and assign them using SNI. The summons is split into two parts as follows :

  • Assign the First SSL Certificate
  • Assign All Additional Certificates

Assign the First SSL Certificate

Do this first typeset of instructions only once ( for the foremost SSL certificate ) .

  1. On the Windows Server 2012 where you imported your SSL certificate with the DigiCert Certificate Utility, unfold Internet information Services ( IIS ) Manager .
    From the Start blind, find Internet Information Services (IIS) Manager and open it .
  2. In Internet Information Services (IIS) Manager, in the Connections pane, expand the name of the waiter on which the certificate was installed. then expand Sites and click the site you want to secure using the SSL certificate .
    IIS 8 Web Site Home Page Bindings
  3. On the web site Home page, in the Actions menu ( right pane ), chink Bindings .
  4. In the Site Bindings windowpane, click Add .
    IIS 8 Site Bindings Window (Unconfigured)
  5. In the Add Site Binding window, do the following and then click OK .

    Type: In the drop-down list, select https.
    IP address: In the drop-down list, select the IP address of the site or select All Unassigned.
    Port: Type 443. (SSL uses port 443 to secure traffic.)
    SSL certificate: In the drop-down list, select the SSL certificate you installed in Step 7 (e.g., yourdomain.com).

    IIS 8 Add Site Binding Dialog

  6. Your first base SSL certificate is immediately installed, and the web site is configured to accept secure connections .
    IIS 8 Site Bindings Window (Configured)

Assign All Additional SSL Certificates

To assign each extra SSL certificate, repeat the steps below ( as needed ) .

  1. In Internet Information Services (IIS) Manager, in the Connections paneling, expand the identify of the server on which the certificate was installed. then expand Sites and click the site you want to secure using the SSL security .
    IIS 8 Web Site Home Page Bindings
  2. On the web site Home page, in the Actions menu ( right field pane ), click Bindings .
  3. In the Site Bindings window, click Add .
    IIS 8 Site Bindings Window (Unconfigured)
  4. In the Add Site Binding window, do the following and then click OK .

    Type: In the drop-down list, select https.
    IP address: In the drop-down list, select the IP address of the site or select All Unassigned.
    Port: Type 443. (SSL uses port 443 to secure traffic.)
    Host name: Type the host name that you want to secure.
    Require server name indication: Select this checkbox after you enter the host name.

    Note: This option is required for any additional certificates/sites after installing the first certificate on the primary site.

    SSL certificate: In the drop-down list, select the SSL certificate you installed (e.g., yourdomain.com).

    iis 8 install 9

  5. You have successfully installed another SSL certificate and configured the web site to accept secure connections.

Test Installation

If your web site is publicly accessible, our DigiCert® SSL Installation Diagnostic Tool can help you diagnose park problems .

Additional Information

  • To enable your SSL certificate for use on other Windows servers, see PFX export instructions .
  • For instructions on disabling the SSLv3 protocol, see Microsoft IIS : Disabling the SSL v3 Protocol .
generator : https://thefartiste.com
Category : Tech

About admin

I am the owner of the website thefartiste.com, my purpose is to bring all the most useful information to users.

Check Also

articlewriting1

Manage participants in a zoom meeting webinar

Call the people who attend the meet as follows Alternate host host Who scheduled the …

Leave a Reply

Your email address will not be published.