Answered RDS 2012 - Certificate Setup

  • Mittwoch, 16. Januar 2013 23:52
     
     

    Hi experts!

    Servername: Roles:

    RDGW1.domain.local WebAccess, Gateway, Licensing, Broker

    RDSH01.domain.local Session Host

    RDS02.domain.local Session Host

    External URL to WebAccess Server: remote.domain.com

    Ok, so far so good.

    Now we want to secure this setup with 3-party SSL certificates.

    I have Binged my ass off, but cant really find any good answers.

    How/where do I create certificate requests for my RDS servers?

    Is it only on RDGW1.domain.local i do a request for remote.domain.com, or must it be a wildcard or SAN cert deployd to all three servers?

    any hints would be appreciated, thanks!




    MrSWE

Alle Antworten

  • Freitag, 18. Januar 2013 06:37
    Moderator
     
     

    How/where do I create certificate requests for my RDS servers?

    Is it only on RDGW1.domain.local i do a request for remote.domain.com, or must it be a wildcard or SAN cert deployd to all three servers?


    You only need to configure your SSL cert in the deployment properties dialog box in the RDCB server.You need to use the Cert for SSO,PUBLISHING,RDWA and RDG.You can buy 3-party SSL certificate for them respectively.For SSO and Publishing,you can use a Wildcard Cert with *.domain.local in the subject line.For RDWA and RDG,you need to use *.domain.com in the subject line.

    Regards,

    Clarence

    TechNet Subscriber Support

    If you are TechNet Subscription user and have any feedback on our support quality, please send your feedback here.


    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.


  • Freitag, 18. Januar 2013 09:58
     
     

    Thank you for your answer Clarence.

    In Deployment Properties | Certificates on the server RDGW1.domain.local (WebAccess, Gateway, Licensing, Broker),  I can choose New Certificate and Existing Certificate.

    When i create a Certificate, it creates a self signed .pfx Cert. If a Select Existing Certificate, I can select an existing Cert...

    But, i can´t find how to do the Certificate Request to send to a 3-party CA?  I´m missing something...


    MrSWE


    • Bearbeitet port443 Freitag, 18. Januar 2013 09:59
    •  
  • Dienstag, 22. Januar 2013 10:21
     
     

    Sorry for bumping ths thread.

    Where/how do I create certificate Requests to send to 3-part CA:s in RDS 2012 environment?

    I really cant fint how to do it in RDS Deployment Properties or in PS. Is it in IIS?




    • Bearbeitet port443 Dienstag, 22. Januar 2013 10:22
    •  
  • Donnerstag, 24. Januar 2013 07:02
    Moderator
     
     Beantwortet
    Yes.Click the server home page in the IIS,double-Click the server certificate in the middle section,and then you can see create cert request in the right section.

    Please remember to click “Mark as Answer” on the post that helps you, and to click “Unmark as Answer” if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.

    • Als Antwort markiert port443 Donnerstag, 24. Januar 2013 18:45
    •  
  • Dienstag, 12. Februar 2013 22:35
     
     

    Hi Clarence ,

    I am confused here, what i understand from your post is that for 

    RD GW =*.domain.com , RD WebA=*.domain.com , SSO=*.domain.local , Pub =*.domain.local  Certificates should apply. 

    I had wildcard SSL/SAN ( *.domain.com) certificate which I  already applied on all of roles of RDS. Which I think is the reason that SSO is not working.

    Please guide me that how I will able to create *.domain.local certificates.

    Regards

    TShabbir