Knowledge Base

Install an SSL Certificate on Microsoft IIS 4

After you create your CSR, get your SSL Certificate, and the validation and processing are done, you are ready to install your SSL Certificate on your site's server. We will send you the certificate by email. It will be an attached text file Once you have this file, here is how you install it.


Installing an SSL Certificate on a Microsoft IIS 4 Server:

  1. First you will need your Root, Intermediate, and Primary Certificate files. You can find and download them in your Customer Account.
  2. Open the Key Manager.
  3. Click on the key in the www directory. This is usually represented as a broken key with a line through it.
  4. Select Install Key Certificate and install the new IIS Primary SSL Server Certificate - this will be my_domain.crt.
  5. Enter the Password.
  6. You will need the IP and Port Number for the next step.
  7. The installation will ask you for your bindings.
  8. If this is the only IIS SSL Certificate installed on your server, then select Any Assigned. If you want to have multiple certificates on the same server, you'll need an individual IP Address for each one of them. This is because SSL does not support host headers, an identifying part of HTTP messages.
  9. Find the Computers menu and choose it.
  10. You will need the Commit Changes option. Alternatively, you can close the Key Manager normally and hit "Yes" when it checks if you want to make changes.
  11. Your Primary SSL Certificate has now been installed on your IIS 4 Server. Congratulations!
  12. Now, we strongly recommend making an immediate backup of the key.
  13. Do this by clicking the Key Menu, selecting Export, then clicking on Backup File.
  14. Store your backup file in a secure place somewhere that is not accessible from the web server. This is a very important security measure.

In order for browsers to begin to show your certificate as trusted, you will first need to install the Intermediate certificate Files.


Installing the Intermediate Certificate Files on Your IIS 4 Server

After you have followed all the steps outlined earlier in this article, restart the server running IIS 4. The steps after this depend on whether you have Service Pack 3 or if you have a more recent version of Service Pack.

What to do if you Have ServicePack 3

  1. Open each certificate (the Intermediate and Root Certificates) in your Internet Explorer. Then click Install Certificate.
  2. Then you have to use this IIS CA batch file to move all of the root certificates from your Internet Explorer to the IIS Certificate Store.

What to do if you have ServicePack 4 or later versions

  1. Open the installation wizard by double-clicking the root certificate (TrustedRoot.crt).
  2. Choose Place all certificates in the following store, then hit Browse.
  3. Navigate through Show physical stores, select Trusted Root Certification Authorities and go to Local Computer. Hit Ok then click Next in the install wizard, then hit Finish.
  4. The steps for the intermediate certificate are the same, except they must be placed in the Intermediate Certification Authorities store.
  5. Finally, you must restart the server. If you only restart IIS, this will not activate your SSL Certficate.

You should now be able to start accepting secure connections on your server. Congratulations, you're done!

Please contact us if you have any questions or issues.

Did you find this article helpful?

* Your feedback is too short