Setup SSL in SharePoint 2013 Using Domain Certificate

Similar documents
SETUP SSL IN SHAREPOINT 2013 (USING SELF-SIGNED CERTIFICATE)

Secure IIS Web Server with SSL

Step-by-step installation guide for monitoring untrusted servers using Operations Manager ( Part 3 of 3)

Certificate Management for your ICE Server

Step-by-step installation guide for monitoring untrusted servers using Operations Manager (Part 1 of 3)

How To Enable A Websphere To Communicate With Ssl On An Ipad From Aaya One X Portal On A Pc Or Macbook Or Ipad (For Acedo) On A Network With A Password Protected (

Setting Up SSL on IIS6 for MEGA Advisor

Wavecrest Certificate

DIGIPASS KEY series and smart card series for Juniper SSL VPN Authentication

HTTP Server Setup for McAfee Endpoint Encryption (Formerly SafeBoot) Table of Contents

How to Configure a Secure Connection to Microsoft SQL Server

Microsoft IIS 4 Guide to Installing Root Certificates, Generating CSR and Installing SSL Certificate

Microsoft Exchange 2010 and 2007

YubiKey PIV Deployment Guide

Microsoft IIS 7 Guide to Installing Root Certificates, Generating CSR and Installing certificate

Verify LDAP over SSL/TLS (LDAPS) and CA Certificate Using Ldp.exe

Creating and Issuing the Workstation Authentication Certificate Template on the Certification Authority

CA NetQoS Performance Center

S/MIME on Good for Enterprise MS Online Certificate Status Protocol. Installation and Configuration Notes. Updated: October 08, 2014

e-cert (Server) User Guide For Microsoft IIS 7.0

Outlook Web Access Guide to Installing Root Certificates, Generating CSR and Installing SSL Certificate

Configuring Load Balancing

NSi Mobile Installation Guide. Version 6.2

etoken Enterprise For: SSL SSL with etoken

Check Point FDE integration with Digipass Key devices

BASIC CLASSWEB.LINK INSTALLATION MANUAL

Scenarios for Setting Up SSL Certificates for View

Renew ADFS and ADFS Proxy servers SSL Service Communication certificate

Preface. Microsoft Office Sharepoint Server 2007 Integration Guide SafeNet, Inc. All rights reserved. Part Number: (Rev A, 06/2009)

Copyright

Connection and Printer Setup Guide

INSTALLING YOUR SSL CERTIFICATE ON THE FILEHOLD SERVER ON WINDOWS 2008 X64 ON IIS 7

HTTP communication between Symantec Enterprise Vault and Clearwell E- Discovery

Tool Tip. SyAM Management Utilities and Non-Admin Domain Users

Desktop Surveillance Help

ECA IIS Instructions. January 2005

Install the Production Treasury Root Certificate (Vista / Win 7)

RSA Security Analytics

DIGIPASS Authentication for Microsoft ISA 2006 Single Sign-On for Outlook Web Access

DriveLock Quick Start Guide

Configuring Security Features of Session Recording

DigitalPersona Pro Server for Active Directory v4.x Quick Start Installation Guide

BusinessObjects Enterprise XI Release 2

How to Configure NetScaler Gateway 10.5 to use with StoreFront 2.6 and XenDesktop 7.6.

WHITE PAPER Citrix Secure Gateway Startup Guide

Document Classification: Public Document Name: SAPO Trust Centre - Generating a SSL CSR for IIS with SAN Document Reference:

Installing and Configuring a Server Certificate for use by MailSite Fusion with TLS/SSL A guide for MailSite Administrators

IIS, FTP Server and Windows

Mobility Manager 9.0. Installation Guide

Integrating idrac7 With Microsoft Active Directory

Sage HRMS 2014 Sage Employee Self Service Tech Installation Guide for Windows 2003, 2008, and October 2013

ESET SECURE AUTHENTICATION. API SSL Certificate Replacement

Browser-based Support Console

App Orchestration 2.5

Entrust Managed Services PKI. Configuring secure LDAP with Domain Controller digital certificates

Password Reset Server Installation Guide Windows 8 / 8.1 Windows Server 2012 / R2

Deploy two-tier hierarchy of PKI

Integrating idrac 7 with Microsoft Active Directory

SQL Server 2008 and SSL Secure Connection

O Reilly Media, Inc. 3/2/2007

HELP DOCUMENTATION E-SSOM DEPLOYMENT GUIDE

APNS Certificate generating and installation

Ekran System v.4.4 Getting Started

Shavlik Patch for Microsoft System Center

Installation and Configuration Guide

Contents. Before You Install Server Installation Configuring Print Audit Secure... 10

Using Internet or Windows Explorer to Upload Your Site

Smart Auditor 1.3 Installation and Configuration

Using LDAP Authentication in a PowerCenter Domain

Clearswift Information Governance

Aspera Connect User Guide

Live Maps. for System Center Operations Manager 2007 R2 v Installation Guide

STATISTICA VERSION 10 STATISTICA ENTERPRISE SERVER INSTALLATION INSTRUCTIONS

Installation Guide. . All right reserved. For more information about Specops Deploy and other Specops products, visit

Configuring Microsoft Active Directory for Integration with NextPage NXT 3 Access Control

Installation Guide. SafeNet Authentication Service

LDAP over SSL Page 1 of 6.

Obtaining SSL Certificates for VMware Horizon View Servers

Enable SSL for Apollo 2015

DMZ Server monitoring with

Tenrox. Single Sign-On (SSO) Setup Guide. January, Tenrox. All rights reserved.

Sage HRMS 2012 Sage Employee Self Service. Technical Installation Guide for Windows Server 2003 and Windows Server 2008

Installation and Configuration Guide

Server Installation Manual 4.4.1

Generating an Apple Push Notification Service Certificate for use with GO!Enterprise MDM. This guide provides information on...

ACTIVE DIRECTORY DEPLOYMENT

ProjectWise Mobile Access Server, Product Preview v1.1

To install the SMTP service:

SHARING FILE SYSTEM RESOURCES

Customer Tips. Configuring Color Access on the WorkCentre 7328/7335/7345 using Windows Active Directory. for the user. Overview

How to use mobilecho with Microsoft Forefront Threat Management Gateway (TMG)

NetWrix Password Manager. Quick Start Guide

NETWRIX EVENT LOG MANAGER

Microsoft Administering the Web Server (IIS) Role of Windows Server

DESLock+ Basic Setup Guide Version 1.20, rev: June 9th 2014

How to configure Mac OS X Server

2. In the Search programs and files field, enter mmc and hit the enter key

Transcription:

2012 Setup SSL in SharePoint 2013 Using Domain Certificate Saifullah Shafiq walisystemsinc.com 12/15/2012

Setup SSL in SharePoint 2013 Using Domain Certificate In the previous articles, you learned how to setup SSL in SharePoint using a third party SSL certificate and a self-signed SSL certificate. Setup SSL In SharePoint 2013 Using Commercial Certificate Setup SSL In SharePoint 2013 Using Self-Signed Certificate In this article, you will learn how to setup SSL using a domain certificate. All steps are same as explained in the previous articles with the exception of creating domain certificate. I will repeat the steps again for your convenience. 1. To generate a domain certificate, you must have Active Directory Certificate Services running. 2. Open Server Manager (All Programs > Administrative Tools > Server Manager). 3. Expand Roles node and see if certificate services role is installed. If not, then install it first using the steps below. 4. Click Roles. Under Roles Summary header, you will see Add Roles link on the right, click it. 5. Click Next. 6. Check Active Directory Certificate Services role and click Next. 7. Click Next again. 8. Certification Authority will already be selected. Select the following services: a. Certification Authority Web Enrollment b. Online Responder c. Certificate Enrollment Policy Web Service 9. Click Next. 10. Keep Enterprise selected and click Next. 11. Keep Root CA selected and click Next. 12. Keep Create a new private key selected and click Next.

13. Select RSA#Microsoft Software Key Storage Provider in the cryptographic service provider (CSP). Change key character length from 2048 to 1024 unless this is production environment and you want to use strong keys. By default, SHA1 is selected in hash algorithm, keep it selected and click Next. 14. Keep the default values selected and click Next. Common name for CA is the name that you will see in certification authority while generating domain certificate. 15. Keep default value selected and click Next. Default validity period is 5 years. 16. Keep default values selected and click Next. These are certificate database and log locations. 17. Keep default option Windows Integrated Authentication selected and click Next. 18. Click Install. 19. Now you have it installed, next step is to create a domain certificate but wait a minute. If your domain controller is on a separate machine then there is one step left. You have to import certificate to the SharePoint machine. The certificate is located in the following folder and has a.crt extension. C:\Windows\System32\CertSrv\CertEnroll

If you ever renamed your server, you will see multiple.crt files. Make sure you pick the one that is current. For example, if your server s FQDN is walisystems.com and server name is SP2013 then the certificate file name will be sp2013.walisystems.com_walisystems-sp2013-ca. Copy the file to the SharePoint machine and import it into Trusted Root Certification Authorities. a. Click Start > Run and type mmc and click OK. MMC console will open. b. From File, select Add/Remove Snap-in. c. Select Certificates from available snap-ins and click Add >. d. Select third option Computer account and click Next. e. Choose Local Computer and click Finish. f. Click Ok. g. Expand Certificates (Local Computer) node. h. Expand Trusted Root Certification Authorities and click Certificates folder. i. Right-click Certificates folder and select All Tasks then select Import. j. Browse to the certificate (.crt) file that you copied from the DNS machine. Click Next. k. Select Automatically select the certificate store based on the type of certificate and leave default store selected. Click Next. l. Click Finish. m. You will get The import was successful message. Click Ok. 20. Now, let s move to the next part which is creating a domain certificate. Open IIS. 21. Click on server name and under Actions on the right, click Create Domain Certificate. 22. Enter a friendly Common name for the certificate, for example, your server s FQDN. Organization should contain your organization s name or your server name. Organization Unit can be an abbreviation of your organization name or machine name. Enter City, State and select Country. Enter full state name, not the abbreviation. Click Next.

23. Click Select button to select Certificate Authority. Select the one that you created above. If you are doing this first time then there will be only one authority listed there. Select it and click OK. Give a friendly name to the Online Certificate Authority, for example, WS_SP2013 and click Finish. That s it. Next you will bind the certificate to your site. Bind Certificate To Your Site 24. Open IIS. 25. Click server name. Expand Sites node. 26. Click site name that you will bind to the SSL certificate. 27. On the right, under Actions, click Bindings.

28. Click Add. 29. In Type, select https. 30. Keep 443 in the Port. This is default port used for SSL. 31. In SSL Certificate, select the certificate you just created. Look for the common name, for example, WS_SP2013. Click OK. That s it. To test SSL setup, open the site in browser. In the address bar, click the lock sign to check validity of the certificate. If you want to see the certificate, click View Certificates link at the bottom of the notification. In case you see error message, click Certificate Error (that appears instead of a golden lock). Click View Certificates. Click Install Certificate button to install the certificate. Click Ok to close the certificate window. Refresh your browser and now you will see a lock.