Issue on Technet Forum
I run an internal Windows CA for my web, server, computer, and user certificates. My root certificate was about to expire, so I renewed it and then proceeded to renew all of my SSL certificates. (as this is a windows 2003 domain and the CA is on a Domain server, the root CA was installed on all the servers and computers as they logged on). All of my webservers updated without issue, with the exception of my Sharepoint server. When I would attempt to renew the certificate it would Fail to install stating that a certificate existed? Also, if I removed the certificate and created a new certificate, it would create the certificate, (which I could see using the mmc certificate snapin), but it would not "install" it for the website. If I then went back into the wizard and selected the certificate it would install, I could view the certificate, but the https url would not render the site.
It turns out that my permissions on my machine key folder on my sharepoint server were incorrect. System had not rights and Everyone had rights to the folder but not the items within the folder. After changing the rights to match the default per kb 278381 , I could select a certificate and install it such that https url rendered my website. I still have an issue in that if I renew the certificate it does not install the newly created certificate, or rather it installs it in the computers certificate store but the website still holds the old certificate, i can then change certificates for the newly created one and the website begins working with the new certificate.
If anyone has any ideas on how to resolve the last part of this issue, let me know.
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment