Depending on your environment you may have the following Issues:
- Website A is coming up as website B.
- Unable to assign a certificate due to another website using the same IP or Port.
- Host Name when binding the certificate is grayed out.
Using Host Headers requires that the following conditions are met:
- You must be using either a Wildcard or a SAN certificate
- The website address being used must meet the following.
- Include as a SAN value on the certificate.
- The Common Name (CN) of the certificate
- Be Covered by a wildcard
- Only one certificate can be used for a given IP address and port combination
- The friendly name of the certificate must have the wildcard * attribute in order to utilize a SAN or wildcard certificate.
To configure a host header for a website in IIS 7.0 & 7.5 perform the following.
Step 1: Ensure you have a friendly name associated with your Server Certificate.
- Start > run > MMC.
- Go into the Console Tab > File > Add/Remove Snap-in.
- Click on Add > Click on Certificates and click on Add.
- Choose Computer Account > Next.
Note: When troubleshooting browser certificates such as client certificates, email signing certificates, CodeSigning, etc.. you will choose My user account instead and continue with the certificate snap in wizard.
- Choose Local Computer > Finish.
- Close the Add Standalone Snap-in window.
- Click on OK at the Add/Remove Snap-in window.
- You will be brought back into the management console where you will see your snap in where you can expand and right click the various folders or certificate so see options that are available to you.
You have successfully created a MMC snap-in to manage certificates on your server system.
Step 2: Assigning a friendly name to an SSL Certificate:
- Under Personal > Certificates, Right click on your certificate you are focused on, and select Properties.
- In the Properties pop up window, under Friendly Name check to see if a friendly name has been assigned to the certificate. If not then specify a friendly name of your choosing.
Note: If you need to use host headers to assign an SSL certificate to a website add a wildcard to the certificates subdomain Example: *.testcsr.com
- Click Ok.
You have now successfully assigned and changed a friendly name to an SSL Certificate.
- Go to Start > Administrative Tools > Internet Information Services (IIS) Manager.
- In the left pane, Click the server name.
- Click on the website you need to configure.
- In the right Actions pane click Bindings
- In the Site Binding dialog pop up box select the https binding for which you want to to configure and click Edit.
Note: If you do not have an https binding yet click Add and under the Type drop down menu select https.
- In the Site binding dialog box under Host name box, type a host header for the site, for example www.domain.com.
- Under the SSL certificate Drop down box select the SSL certificate you wish to assign to this website.
- Click Ok.
To use the same certificate with an additional website (using the same IP address and port combination), create and/or modify the binding on the site in question. Specifying the Host Name using host headers may resolve any conflicts with IP and Port configurations.
Your Websites and the direction of traffic should now work with the Host headers option utilizing a wildcard or SAN certificate
If this resolution does not work or will have to contact Microsoft regarding your unique environment.
SSL2048 is part of Acmetek who is a Symantec Website Security Solutions Authorized Distributor and a Platinum Partner. Acmetek offers all 4 Brands of SSL Certificates: Symantec, Thawte, GeoTrust and RapidSSL. Offering Norton Shopping Guarantee that inspires trust and increases online sales with a 20x ROI Guarantee.
Contact an SSL Specialist to buy your SSL Certificates from Acmetek, a Symantec Strategic/Platinum Distributor.
Become a Partner and create additional revenue stream while the heavy lifting for you.