Ask a Question

Solution ID : SO22345

Installation Instructions for Microsoft IIS 8.0 and 8.5

Solution

This document was created to assist with the installation of an SSL certificate in IIS 8.  If this document can not be used within the environment, RapidSSL recommends contacting an organization that supports IIS 8.0 or 8.5.
 

Select the correct installation instructions based on the following certificate criteria below:

RapidSSL Security Center
Certificates enrolled on or after November 10, 2017

Partner issued certificates
Certificates enrolled on or after November 10, 2017
 
 

RapidSSL Security Center - Certificates enrolled on or after November 10, 2017

This document provides two options installing SSL certificate for Microsoft IIS 8.0 or 8.5.

  • SSL Assistant certificate installation
  • Manual SSL certificate installation
 
  1. Download your certificate from the unique secure link we provide your technical contact via order fulfillment email.
  2. The ZIP file you download contain the SSL and Intermediate CA certificate in PKCS#7 file (i.e. ssl_certificate.p7b).
  3. Unzip the download file onto the server where you will install the certificate.
  4. Follow instructions in the getting_started.txt file.
 

Install Your SSL Certificate Manually

  1. Download your certificate from the unique secure link we provide your technical contact via email.
  2. The ZIP file you download contain the SSL and Intermediate CA certificate in PKCS#7 file (i.e. ssl_certificate.p7b).
  3. Unzip the files onto the server where you will install the certificate.
  4. Go to Start > Administrative Tools > Internet Information Services (IIS) Manager
  5. From the left menu, click the corresponding server name where the certificate will be installed.
  6. In the Features pane (middle pane), under Security, double-click Server Certificates
  7. From the Actions pane (right pane), select Complete Certificate Request
  8. Provide the location of the certificate file and a Friendly Name.  Update the File Types in the Open dialog box to All Files (*.*) to select the .P7B certificate file.  The Friendly Name is a reference name for quick identification of the certificate for the Administrator.
  9. Be sure that the Personal store is selected, then click OK



    Note: At this point the server may respond with one of two known error messages referenced below.  If an error is received, click one of the links below to complete the installation.  If no error is reported, proceed to Binding certificate to the website.

    CertEnroll::CX509Enrollment::p_InstallResponse:ASN1 bad tag value met. 0x8009310b (ASN: 267)

    Cannot find the certificate request associated with this certificate file. A certificate request must be completed on the computer where it was created.
 
Binding the RapidSSL certificate to the web site
  1. From the Connections pane on the left, expand the Sites folder.
  2. Select the appropriate web site.
  3. From the Actions pane on the right, click on Bindings



     
  4. In the Site Bindings window, If there is no existing https binding, choose Add and change Type from HTTP to HTTPS.

    Note: If there is an https binding, select it and click Edit



     
  5. From the SSL Certificate drop down, select the friendly name for the SSL certificate that was used during installation


     
  6. Click OK


Verify certificate installation

  1. To verify the RapidSSL certificate installation, use the RapidSSL Installation Checker.
  2. In some rare cases, a restart of IIS or a reboot of the server may be necessary in order for the changes to take affect.
 
 
 
 
Step 1: Download the RapidSSL certificate.

To download a RapidSSL Certificate from the User Portal, perform the steps bellow:

  1. Visit the RapidSSL User Portal
  2. Provide the Common Name or Order Number, Technical Contact Email Address associated with the certificate order and the Image Number generated from the GeoTrust User Authentication page. 

    Note:  If access is requested using the Common Name there will be a list of order numbers for that domain.  Please select the most recent order.  Any previous orders that are listed can not be used to download the certificate.  If access is requested with an Order Number, an email will be sent to access that order.
     
  3. Select Request Access against the correct order ID.
  4. An email will be sent to the Technical Contact email address specified.
  5. Click on the link listed in the email to enter the User Portal
  6. Click View Certificate Information.
  7. Select the PKCS#7 format from the drop down menu.
     

Step 2: Install RapidSSL Certificate

  1. Go to Start > Administrative Tools > Internet Information Services (IIS) Manager
  2. From the left menu, click the corresponding server name where the certificate will be installed.
  3. In the Features pane (middle pane), under Security, double-click Server Certificates
  4. From the Actions pane (right pane), select Complete Certificate Request
  5. Provide the location of the certificate file and a Friendly Name.  Update the File Types in the Open dialog box to All Files (*.*) to select the .P7B certificate file.  The Friendly Name is a reference name for quick identification of the certificate for the Administrator.
  6. Be sure that the Personal store is selected, then click OK



    Note: At this point the server may respond with one of two known error messages referenced below.  If an error is received, click one of the links below to complete the installation.  If no error is reported, proceed to Step 3

    CertEnroll::CX509Enrollment::p_InstallResponse:ASN1 bad tag value met. 0x8009310b (ASN: 267)

    Cannot find the certificate request associated with this certificate file. A certificate request must be completed on the computer where it was created.


Step 3: Binding the RapidSSL certificate to the web site

  1. From the Connections pane on the left, expand the Sites folder.
  2. Select the appropriate web site.
  3. From the Actions pane on the right, click on Bindings



     
  4. In the Site Bindings window, If there is no existing https binding, choose Add and change Type from HTTP to HTTPS.

    Note: If there is an https binding, select it and click Edit



     
  5. From the SSL Certificate drop down, select the friendly name for the SSL certificate that was used during installation


     
  6. Click OK


Step 4:  Verify certificate installation

  1. To verify the RapidSSL certificate installation, use the RapidSSL Installation Checker.
  2. In some rare cases, a restart of IIS or a reboot of the server may be necessary in order for the changes to take affect.

Microsoft Support
 
           For more information contact Microsoft.