RE: SSL Bridging and Certificates

  • From: "Mulnick, Al" <Al.Mulnick@xxxxxxxxxx>
  • To: "'[ExchangeList]'" <exchangelist@xxxxxxxxxxxxx>
  • Date: Wed, 13 Oct 2004 14:00:35 -0400

And this part didn't help?

9. Configure ISA server to use the imported certificate and create the
publishing rule.

If you had the ISA Management console open you may have to close it and open
it again to see the certificate.
 

-----Original Message-----
From: Mustafa Cicek [mailto:mbcicek@xxxxxxxxx] 
Sent: Wednesday, October 13, 2004 12:42 PM
To: [ExchangeList]
Subject: [exchangelist] RE: SSL Bridging and Certificates

http://www.MSExchange.org/

Hi Al!
Yes I followed it.
Only difference is that I used my own CA, not any third-party CA such as
Verisign.

I think you misunderstood the situation. Steps again!
1) I installed on Web server a Web server certificate through my own
Enterpreise CA.
2) I exported this certificate named owa.mydomain.com with private key to a
file.
3) I imported certificate from this file to ISA server on MMC > Local
Computer > Personal store.
4) I imported also Root CA certificate (*.crt file) to ISA server.

I need this certificate to trust Web server and to connect between ISA and
Web server. I had no trouble with these configuration and installation.
THAT was the first part.

THe second part is also NO problem. Here are the steps that I followed:
1) I created a certificate FOR ISA server (Web Server certificate template).
It is named exchange.mydomain.com.
2) I stored this certificate also on ISA server on MMC > Local Computer >
Personal store.

I hope you can follow me...

Then I created a publishing rule for Web server. I used SSL Bridging for
it:
1) I defined Web Listener and I enabled SSL port and selected the
certificate exchange.mydomain.com for this Listener.
2) Then I went to BRIDGING tab on this publishing Rule and selected REDIRECT
REQUESTS TO SSL PORT. Then also enabled USE A CERTIFICATE TO AUTHENTICATE TO
THE SSL WEB SERVER.
3) (This step Important!!!) Then I clicked on SELECT button to select a
certificate. THen I had the errorr message: THERE ARE NO CERTIFICATES TO
CONFIGURED ON THIS SERVER. That is the problem!

I hope, it is clear now for you what I meant.

Best Regards
Mustafa

------------------------------------------------------
List Archives: http://www.webelists.com/cgi/lyris.pl?enter=exchangelist
Exchange Newsletters: http://www.msexchange.org/pages/newsletter.asp
Exchange FAQ: http://www.msexchange.org/pages/larticle.asp?type=FAQ
------------------------------------------------------
Other Internet Software Marketing Sites:
World of Windows Networking: http://www.windowsnetworking.com Leading
Network Software Directory: http://www.serverfiles.com
No.1 ISA Server Resource Site: http://www.isaserver.org Windows Security
Resource Site: http://www.windowsecurity.com/ Network Security Library:
http://www.secinf.net/ Windows 2000/NT Fax Solutions:
http://www.ntfaxfaq.com
------------------------------------------------------
You are currently subscribed to this MSEXchange.org Discussion List as:
al.mulnick@xxxxxxxxxx To unsubscribe visit
http://www.webelists.com/cgi/lyris.pl?enter=exchangelist
Report abuse to listadmin@xxxxxxxxxxxxxx


Other related posts: