Jump to content

Recommended Posts

Posted

Hi,

 

We have an internal site and we have to use HTTPS for it, the site is using a self assigned certificate. Is it possible to configure IE in group policy to not show the certificate error screen please?

 

Thanks

 

Z

Posted

Ok thanks, im stuck already :(

 

On the Signature certificate, it want a certificate from the store. What do i do here, do i import im existing on into there?

 

Z

Posted

What you want is a copy of the cert used for the internal site to add into the trusted list, you only need the public key so you can either go into IIS on the host machine and export it from there. Or you could go to the site in ie, open up the page properties, click the certificates button and export it from there.

 

The other thig that you can do is to export a copy of the root certificate for the issuing computer (your cert server) and import that. That will tell your machines to trust anything signed by it if you have it in your trusted root providers folder.

Posted
What you want is a copy of the cert used for the internal site to add into the trusted list, you only need the public key so you can either go into IIS on the host machine and export it from there. Or you could go to the site in ie, open up the page properties, click the certificates button and export it from there.

 

This is what i have done, and i am stuck at the point said on by previous post.

 

Thanks

Posted
Disclaimer - We'll also note that we are not even remotely approaching PKI or Group Policy experts, and we have mainly muddled through several of the choices offered on the road to something that appears to work well. We'd certainly welcome input from those who actually know this stuff.

 

I take it that it works well then? :D

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...