Version Affected: All
Overview
The binding certificate secures HTTPS access to the IdP -- it's the certificate shown when clicking the padlock icon in a browser. It may need to be replaced if the IdP's fully qualified domain name (FQDN) changes, or if the certificate expires.
Replace the IIS Binding Certificate
- Open IIS Manager on the IdP.
- In the left pane, click the machine name.
- In the middle pane, double-click Server Certificates.
- If the new certificate is a renewal of an existing certificate, click Enable Automatic Rebind of Renewed Certificate in the right pane.
- Click Import... in the right pane.
- In the Import Certificate dialog, select the certificate and enter a password if it is password protected. Leave Select certificate store set to Personal.
- If Automatic Rebind was enabled in step 4 and this is a renewed certificate, no further action is required. For a certificate change that is not a renewal, continue to the next step.
- In the left pane, expand Sites, then click Default Web Site.
- In the right pane, click Bindings....
- In the Site Bindings dialog, select https, click Edit, then click Select.
- Choose the new certificate and click OK.
SecureAuth Knowledge Base Articles provide information based on specific use cases and may not apply to all appliances or configurations. Be advised that these instructions could cause harm to the environment if not followed correctly or if they do not apply to the current use case.
Customers are responsible for their own due diligence prior to utilizing this information and agree that SecureAuth is not liable for any issues caused by misconfiguration directly or indirectly related to SecureAuth products.
Comments
Please sign in to leave a comment.