all groups > iis security > march 2005 >
You're in the

iis security

group:

SSL setup problem on IIS 5


SSL setup problem on IIS 5 Morgan Kane
3/10/2005 4:24:56 PM
iis security:
Windows 2000 server with IIS 5.
All patches installed.

Many different domains using host headers.
4 sites using IP and SSL.

Problem:
Added a new IP to the server.
IIS can see the IP and its an option when adding domain.
(The domain we want to use SSL for is currently using host headers so we
removed it.)
Setting up the same domain using an IP instead of host header but the
SSL option is not available.

How do I fix this problem when the SSL port is all grayed out and no
option to add anything in the SSL section.

Any suggestion is welcome.

Re: SSL setup problem on IIS 5 Morgan Kane
3/10/2005 5:19:30 PM
[quoted text, click to view]


This site has its own IP.
All the sites using SSL does have its own unique IP.

The ip is not used by anything else.

Any suggestions?
Re: SSL setup problem on IIS 5 Jason Brown [MSFT]
3/11/2005 9:32:03 AM
you can host multiple SSL sites on IIS, but each one MUST have a unique IP
address. Make sure each existing SSL site is bound to a specific IP address
that isn't used by anything else


--
Jason Brown
Microsoft GTSC, IIS

This posting is provided "AS IS" with no warranties, and confers no rights.

[quoted text, click to view]

Re: SSL setup problem on IIS 5 Morgan Kane
3/11/2005 11:59:09 AM
[quoted text, click to view]


Did figure it out.

Turns out that the private key did not match the certificate.
The certificate got purchased 5 months ago but never got installed
before now. Not sure how the private key did get messed up.

Created a new key and got a new certificate and everything worked fine.

Thanks,
Re: SSL setup problem on IIS 5 Jason Brown [MSFT]
3/11/2005 12:02:12 PM
OK, exactly what steps have you followed to get this far?

You've got a certificate that matches the common name?
You've made sure all other SSL sites are bound to their individual IPs?
You've installed said certificate correctly?
You don't have anything else listening to 443 on that IP address?
The graying out suggests that you don't have the cert installed (just
checked this out myself), but the others could conceivably apply


--
Jason Brown
Microsoft GTSC, IIS

This posting is provided "AS IS" with no warranties, and confers no rights.



[quoted text, click to view]

AddThis Social Bookmark Button