{"id":641,"date":"2006-11-16T12:08:14","date_gmt":"2006-11-16T20:08:14","guid":{"rendered":"\/?p=641"},"modified":"2006-11-16T15:09:14","modified_gmt":"2006-11-16T23:09:14","slug":"creating-and-installing-a-certificate-in-iis","status":"publish","type":"post","link":"https:\/\/www.identityblog.com\/?p=641","title":{"rendered":"Installing a machine certificate in the Windows certificate store"},"content":{"rendered":"<p>Our goal is to install a&nbsp;key and certificate that will act on behalf of your IIS server.&nbsp; So the certificate&nbsp;must be&nbsp;stored in the &#8220;local machine&#8221; part of&nbsp;your certificate store (as opposed to that belonging to any one specific user)&nbsp;&nbsp; Here&#39;s how do that:<\/p>\n<ul>\n<li>Create a console&nbsp;by selecting&nbsp;&#8220;Start->Run&#8221; and entering &#8220;mmc&#8221; (or just type &#8220;start mmc&#8221; from a command prompt.<\/li>\n<li>A console will be created, and under the File menu, select &#8220;Add\/Remove Snap-in&#8221;.<\/li>\n<li>Select Add, and the &#8220;Add Standalone Snap-in&#8221; screen appears<\/li>\n<li>Select &#8220;Certificates&#8221; and press the related &#8220;Add&#8221; button<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-3.gif\" \/><\/p>\n<ul>\n<li>Select the &#8220;Computer account&#8221; radio button and press &#8220;Next&#8221;, then &#8220;Finish&#8221; with the next screen<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-4.jpg%20\/%3E%3Cp%3E&nbsp;%3C\/p%3E%3Cimg%20src=\" \/><\/p>\n<ul>\n<li>Unwind the dialogs by pressing &#8220;Close&#8221; and &#8220;OK&#8221;<\/li>\n<li>Open up &#8220;Personal&#8221; and the &#8220;Certificates&#8221; as shown here:<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-6.jpg%20\/%3E%3Cp%3E&nbsp;%3C\/p%3E%3Cimg%20src=\" \/><\/p>\n<ul>\n<li>Then under the &#8220;Action&#8221; menu, select &#8220;All tasks&#8221; and then &#8220;Import&#8230;&#8221;<\/li>\n<li>&#8220;Next&#8221; yourself past the first page of the wizard to get to the&nbsp;import menu.&nbsp; You can just type the path, but if you browse, remember to change the &#8220;File Type&#8221; to &#8220;Personal Information Exchange&#8221; or you won&#39;t see anything.<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-8.jpg%20\/%3E%3Cp%3E&nbsp;%3C\/p%3E%3Cimg%20src=\" \/><\/p>\n<ul>\n<li>Press &#8220;Next&#8221; and you will be asked for the file&#39;s passphrase.&nbsp; Enter it, press &#8220;Next&#8221; and then accept the default Certificate store with another &#8220;Next&#8221;.<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-10.jpg%20\/%3E%3Cp%3E&nbsp;%3C\/p%3E%3Cimg%20src=\" \/><\/p>\n<ul>\n<li>This takes you to the finish dialog, and you end up with a&nbsp;certificate&nbsp;that can be used by&nbsp;the IIS process.&nbsp;<\/li>\n<\/ul>\n<p><img src=\"\/wp-content\/images\/2006\/11\/ssl-11.jpg%20\/%3E%3Cp%3E&nbsp;%3C\/p%3E%3Cimg%20src=\" \/><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Our goal is to install a&nbsp;key and certificate that will act on behalf of your IIS server.&nbsp; So the certificate&nbsp;must be&nbsp;stored in the &#8220;local machine&#8221; part of&nbsp;your certificate store (as opposed to that belonging to any one specific user)&nbsp;&nbsp; Here&#39;s how do that: Create a console&nbsp;by selecting&nbsp;&#8220;Start->Run&#8221; and entering &#8220;mmc&#8221; (or just type &#8220;start mmc&#8221; &hellip; <a href=\"https:\/\/www.identityblog.com\/?p=641\" class=\"more-link\">Continue reading <span class=\"screen-reader-text\">Installing a machine certificate in the Windows certificate store<\/span><\/a><\/p>\n","protected":false},"author":68,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/641"}],"collection":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/users\/68"}],"replies":[{"embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=641"}],"version-history":[{"count":0,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=\/wp\/v2\/posts\/641\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=641"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=641"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.identityblog.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=641"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}