Link to home
Start Free TrialLog in
Avatar of onlinerack
onlinerackFlag for United States of America

asked on

IIS 6.0 with SSL issue on a vmware box.

I have a very weird problem,
I have a windows VMWare box (host is win2003 OS)
it has a few guest 2003 servers running.

the host OS does not have IIS installed its IP is 10.0.0.5
one of the guest 2003 servers (IP 10.0.0.6) has IIS.
I issued temp SSL from the IIS console with the setting for all unassigned and get a trusted root SSL installed on it. Now when I got to the server by IP address, I get a warning that it is not matching the domain, however I see the right trusted SSL installed. however, if I go to the server with the FQDN, I see a warning message that it does not match the name and the certificate is showing that it was issued by the temp SSL from IP 10.0.0.5 which is the ip of the host OS not the guest.
I deleted the certificate and set the website on IIS to have 10.0.0.6 as the IP of the website and created the SSL and got the trusted certificate reissued from the new CSR but it is still showing cerificate issued from the 10.0.0.5 and I cannot clear it.

it is driving me crazy. I went through the MMC for the installed certificate on the guest OS and did not see it there..... have you seen this before.

what is driving me nut is how it picked up the IP of the host OS and not the guest and why it is not clearing out when I clear the SSL completely from teh website setting, it still listens on port 443
Avatar of meverest
meverest
Flag of Australia image

Hello,

that seems more like a dns issue than anything else.  What does your FQDN really resolve to?  Maybe if you ping your FQDN, it will resolve to 10.0.0.5?

Also, what do you mean by trusted root - you got your cert from a trusted authority (like verisign, thawte, etc) or you installed a SA root on one of the servers?  If the latter, which one, the host or the guest?

Cheers.
ASKER CERTIFIED SOLUTION
Avatar of cj_1969
cj_1969
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial