Configure SSL for DV on IIS
Budget: $10 – $30 AUD
I need help configuring a Domain Validated (DV) SSL certificate on my IIS server.
We have a Medical software which will run on a physical server running IIS 10. That server needs this SSL for that software to work. We have purchased the SSL certificate already - below is the certificate we have purchased:
https://www.ssltrust.com.au/verokey/secure-web
We have not yet registered a domain for the ssl.
Below is what has been provided to us as requirements by the software company:
Web server certificate (SSL/TLS)
A web server certificate is necessary to make sure that all information shared
between the xxxxx Web Upload server and client is secure and encrypted.
The server certificate encrypts all transferred data. The server must have Internet
Information Services (IIS) to create and complete a server certificate.
The certificate must obey the specified requirements:
• X.509
• Have a private key (RSA key length 2048 bits or longer recommended)
• Key Usage Purposes with these properties selected:
• Key Encipherment
• Digital Signature
• Extended Key Usage Purposes with this property selected:
• Server Authentication
• Have a valid date range (includes current date)
• Must have a valid Subject Alternative Name
• Match the valid host name to the DNS name
• Configured with a functioning CRL (Certificate Revocation List) distribution point
URL and/or the Online Certificate Status Protocol (OCSP)
NOTE:
Self-signed certificates are discouraged. Use self-signed certificates if the client is
an intranet-only application that is not external facing.
xxxxx Web Upload server per-installation
xxxxxxxx recommends these certificate types:
• Certificate authority
• Third-party for free
• Third-party for purchase
The process to create and register a server certificate can be different depending
how the server certificate is created and signed. A server certificate can be self signed,
signed by a Certificate Authority (CA), or provided by a third-party (open
source or for purchase).
Install the issued certificate to the Local Machine > Personal Certificates store
The ideal freelancer for this project should:
- Be highly experienced with IIS server
- Have a deep understanding of SSL certificate configuration
- Preferably have prior experience working with DV certificates
We have a Medical software which will run on a physical server running IIS 10. That server needs this SSL for that software to work. We have purchased the SSL certificate already - below is the certificate we have purchased:
https://www.ssltrust.com.au/verokey/secure-web
We have not yet registered a domain for the ssl.
Below is what has been provided to us as requirements by the software company:
Web server certificate (SSL/TLS)
A web server certificate is necessary to make sure that all information shared
between the xxxxx Web Upload server and client is secure and encrypted.
The server certificate encrypts all transferred data. The server must have Internet
Information Services (IIS) to create and complete a server certificate.
The certificate must obey the specified requirements:
• X.509
• Have a private key (RSA key length 2048 bits or longer recommended)
• Key Usage Purposes with these properties selected:
• Key Encipherment
• Digital Signature
• Extended Key Usage Purposes with this property selected:
• Server Authentication
• Have a valid date range (includes current date)
• Must have a valid Subject Alternative Name
• Match the valid host name to the DNS name
• Configured with a functioning CRL (Certificate Revocation List) distribution point
URL and/or the Online Certificate Status Protocol (OCSP)
NOTE:
Self-signed certificates are discouraged. Use self-signed certificates if the client is
an intranet-only application that is not external facing.
xxxxx Web Upload server per-installation
xxxxxxxx recommends these certificate types:
• Certificate authority
• Third-party for free
• Third-party for purchase
The process to create and register a server certificate can be different depending
how the server certificate is created and signed. A server certificate can be self signed,
signed by a Certificate Authority (CA), or provided by a third-party (open
source or for purchase).
Install the issued certificate to the Local Machine > Personal Certificates store
The ideal freelancer for this project should:
- Be highly experienced with IIS server
- Have a deep understanding of SSL certificate configuration
- Preferably have prior experience working with DV certificates