HTTPS Certificate
Create a Certificate Template for HTTPS Binding
To complete this step, the Active Directory Certificate Services (AD CS) role must be installed and configured in your infrastructure.
Connect to your company’s Certificate Server.
Open the Certification Authority console and navigate to the Certificate Templates section.
Right-click on the Certificate Templates folder and select Manage.
From the list, locate the Web Server template, right-click it, and select Duplicate Template.
Configure the following settings:
General Tab: Fill in the Display Name and Template Name fields (e.g.,
ARK2FA SSL Template).Request Handling Tab: Check the option Allow private key to be exported.
Subject Name Tab: Select Supply in the request.
Security Tab: Add the computer account of the ARK2FA server (
TEST-SRV01$). Grant this account Enroll permission, then click OK.
Click OK to save the template and close the “Certificate Templates” window.
In the Certification Authority main window, right-click the Certificate Templates folder, select New, then choose Certificate Template to Issue.
Select the newly created
ARK2FA SSL Templateand click OK.
Request an HTTPS Certificate
ARK2FA is a web-based application that operates over the HTTPS protocol.
To generate the certificate, run
mmc.exeon the ARK2FA server (TEST-SRV01). Add the Certificates snap-in for the Computer account > Local computer.Right-click on the Personal folder, hover over All Tasks, and select Request New Certificate...
On the “Before You Begin” page, click Next.
On the “Select Certificate Enrollment Policy” page, click Next again.
Choose the previously created
ARK2FA SSL Template. This certificate requires additional information — click More information...In the “Subject” window, fill out the Subject Name and Alternative Name fields as follows:
Subject Name:
Type: Common Name
Value:
ark2fa.domain.comClick Add.
Alternative Name:
Type: DNS
Value:
ark2fa.domain.comClick Add.
Value:
TEST-SRV01.domain.comClick Add.
Click OK to confirm.
On the “Request Certificates” page, the Enroll button will become active. Click Enroll to complete the certificate request process, then click Finish to close the wizard.
Last updated