02-10-2021 01:10 PM
I have a GoDaddy SSL on IIS on my Duo Access Gateway. It expires soon. Since it hasn’t expired yet, i just need to download the SSL from Godaddy, import the new intermediate SSL cert in the server’s certificates MMC. The next step is my question. Can I just go to IIS>server name> server certificates>actions then Import? Instructions by DUO appear to just cover setting up a new DUO AG server where you Create Certificate Request then Complete Certificate Request.
02-11-2021 11:45 AM
Yes, you will import your new certificate into the cert store on the Windows server like you did the first time, and then in IIS update the HTTPS site bindings to use the new certificate instead of the expiring one via the drop-down that lists the available certs.
ETA: Basically this, but in step 28 instead of creating a new binding, you edit the HTTPS/443 binding that is already there to pick the new certificate.
02-11-2021 12:15 PM
Regarding “Install your SSL certificate” Steps 17 thru 24 may be skipped since this time I did not Create (a) Certificate Request. I just downloaded the updated certificate from GoDaddy (with new validity period). Right?
02-11-2021 12:47 PM
Yes, sorry, I was just referring to the steps in the “Bind the SSL certificate” section.
02-24-2021 07:38 AM
Thank you for your previous response. I still run in to an issue when after Complete Certificate Request, then browsing to the cer file, adding a friendly name and clicking ok. In Server Certificates, it then shows the original godaddy certificate which the date expiring in May 2021, and the certificate with the the renewed date expiring in 2022. When i click to server and then back to Server Certificates the expiring certificate is still there, but the new one is gone.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide