Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

SSL Certificate

Status
Not open for further replies.

sysadmingirl

IS-IT--Management
Jan 19, 2005
15
US
Hi All,

I'm trying to secure my OWA site with an SSL certificate.
I'm not sure how to go about it, I did create a certificate request, however who do I send this too? and how much will it cost?

thanks much!
 
sysadmingirl,
Ok, I need to get some ifo from you before we proceed with this topic.

Do you want secure communications between your OWA server and whatever PC you clients are using at the time they log in

or

Do you want to be able to dictate what PCs and client are able to access your OWA server?

ImWoody
 
Actually I was able to install the certificate using the microsoft certificate server. However now i'm trying to reach the site but It keeps coming up as "page cannot be found
 
What versions of servers are you using?

NT?

Cert Server?

IIS?

plus, the answer to the question I first posed.
 
I want to use secure channel between server and any pc.
I'm using Windows 2000 server, with Exchanage 5.5.
I created a certificate using Microsoft certsrv and IIS
I was able to create and install the certificate successfully.

but now when I try to browse using site I get the following error.

"The page cannot be displayed"

Help :(
 
ok, it's good that you're using 2000 Server as Certserver 1.0 (which comes with NT 4.0) has issues dealing with IE6.

Is everything installed on the same server? Exchange, OWA, IIS, Certserver? It doesn't have to be all on the same server but if it is, that's fine.

Do you have in front of you? If not print it out and run down the process to make sure you have done everything that's required.

It should work, if not, let me know and we can troubleshoot.

ImWoody
 
Yes everything is installed on the same server.

and Yes I did follow the instructions, but no luck

One more thing, our firewall is also used as a proxy server in the company, in other words we can't browse the internet if we don't have the proxy server address under connections tab of internet options.

Not sure if this could be related.
Nadia
 
ok, tell me what happens when you try to browse to

owa netbios servername here>/exchange

owa netbios servername here>/certsrv

owa netbios servername here>


and

owa netbios servername here>/certsrv

owa netbios servername here>

I'm trying to determine if SSL is working and for what web server directories.
 
Try one more thing first,

address of server>

if that doesn't work, then yes, remove the cert. and see if you can get any response from the server.
 
this is what i got;

ERROR
The requested URL could not be retrieved

--------------------------------------------------------------------------------

While trying to retrieve the URL: 10.1.6.104:443

The following error was encountered:

Connection Failed
The system returned:

(111) Connection refused
 
ok, so the web server is not accepting connections on port 443.

Go to your ISM and check under the directory security tab, under secure communications, click the "edit button" and see if "Require a secure channel when accessing this resource" is checked.
 
Oops, this would be under the properties of the website or virtual directory that you applied the certificate to.
 
IF it's not working on http: after removing the cert then I'd go back to square one. Remove OWA, remove the cert server, remove IIS.

Do you have another server to put IIS, Cert Serv and OWA on so you don't have to keep restarting you Exchange Server?

If not, then load IIS and Cert Server back on and apply Windows 2000 SP4. Then load OWA and apply Exchange 5.5 SP4

Then you'll be ready to take another crack at SSL.
 
Hi,

I've removed the certificate, but now when I type my user name it prompts me for my windows password, but Its not accepting it...
Do you know why is that??
 
are you typing it in the format "domain\username" ?

ImWoody

P.S. are you on AIM?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top