Groups | Blog | Home
all groups > iis security > september 2004 >

iis security : SSL Cert - DNS ERROR


Steve Santos
9/20/2004 6:25:45 PM
I have installed an SSL Certificate on a Windows 2000 Server.

On the Default Web Site properties I add port 443 to the SSL Port but did
not require SSL for the etinre site.

On a sub folder I set Secure Communications to require SSL.

When attempting to connect to a web page on the sub folder with "http" I do
get the error message that "The page must be viewed over a secure channel"
HTTP 403.4 error message, that is good.

When I attemp to connect using "https" I get "The page you are looking for
is currently unavailable." page and at the botton of the page it reads
"Cannot find server or DNS Error - Internet Explorer"

If I remove SSL required I can connect to the page using "http".

Any advice to steer me in the right direction is apprciated.

Thanks,

Steve Santos
ssantos@csuchico.edu

Miha Pihler
9/20/2004 10:47:49 PM
Hi Steve,

Run this tool on your server. It should tell you if there are any
configuration or certificate problems that you need to resolve.

SSL Diagnostics Version 1.0 (x86)
http://www.microsoft.com/downloads/details.aspx?FamilyID=cabea1d0-5a10-41bc-83d4-06c814265282&DisplayLang=en

Mike

[quoted text, click to view]

Steve Santos
9/21/2004 1:03:35 AM
Yes, I did run SSL Diags but have been unable to track down the mesage:
"#WARNING:Connecting to server: 0x274d (10061) " error that I get in several
areas.

The only different from the one above is in the ServerState:
"#WARNING:Incorrect SecureBindings"

Trying to track that down also.

--Steve



[quoted text, click to view]

Bernard
9/21/2004 10:49:12 AM
check the ssl port binding again.. is it 443 ?

try
PRB: Error "Page Cannot Be Displayed" When You Connect Through HTTPS
http://support.microsoft.com/?id=290391

HOW TO: Determine If SSL Connectivity Is Not Working on the Web Server or on
an Intermediate Device
http://support.microsoft.com/?id=290051

"Cannot find server" or "DNS" Errors When Using SSL (Q & A)
http://support.microsoft.com/?id=292296

at command prompt, enter
"netstat -an", see anything binding on port 443 ?

anything in event log ?


--
Regards,
Bernard Cheah
http://www.tryiis.com/
http://support.microsoft.com/
http://www.msmvps.com/bernard/



[quoted text, click to view]

AddThis Social Bookmark Button