ECTS Certificate Woes
So I'm trying to install the RTM ECTS bits and hit a snag on the certificate front. I get the dreaded "Unable to establish secure connection with the server C:\Inetpub\wwwroot\wss\VirtualDirectories\nnnnnn\web.config line 133)" error. My Extranet box is joined to the dmzcorp.com domain, which has a one way trust trusting everything from insidecorp.com. The certificate was received from a CA on the insidecorp.com domain and installed on the Extranet box, which is also where the ADAM store is located. I've installed certificates for extranet.dmzcorp.com as well as extranet.insidecorp.com to no avail.
So do I need to use a CA from the dmzcorp.com domain, an external CA, or is there something else I'm missing here why this won't work?
Thanks!
All Replies
If you got a server authentication certificate on the server running ADAM, you are almost there. The problem is that by default the ADAM server can't read the certificate file because it doesn't have permissions. Please take a look at the documentation in chapter 2 of the Deployment Guide for information. In addition, you can see the answer to the similar question about ADAM and SSL here: http://www.microsoft.com/windowsserver2003/adam/ADAMfaq.mspx.
Good luck!
Bill
I tried out this here, and I could not get the problem.
This looks like you may not have followed the instructions given in the document for the certificate on the ADAM server exactly. If your certificate is already installed, uninstall the certificate and then try following the steps mentioned in the Deployment Guide section “Pre Installation Steps” exactly.
Praveen P.- Unproposed As Answer byMike Walsh MVPMVP, ModeratorMonday, May 04, 2009 5:51 AM
- Proposed As Answer byPraveen_Palakkazhi Monday, December 15, 2008 4:43 AM
- Praveen,
I have been working on this for almost two weeks now. I know we have to be close. I have the Config Utility working. My Challenge is with the while adding external users. I am getting the "Unable to connect . . . .line 133. error that has been referrence all over this blog.
I have been working on the cert issue. When I am requesting the Cert, am I to use the internal name of my server or the external name of the server? I have tried both and still cannot get ldap to connect. Should I be using Servername.domain.local, or externalurl.com. I am sure your help from my reading this bloag has thus far has gotten me close.