Solved

https canonical to https non-canonical

Posted on 2014-04-04
5
188 Views
Last Modified: 2014-04-07
Hello everyone,
I have a question and hoping someone might have the answer for it.  I have a web server hosting 3 web sites all using SSL.  I have a SAN SSL supporting each of the sites.  The sites are in the Cert as www.mydomain.com, www.mydomain1.com, ect.  
What I am trying to do, is get it if someone types in the canonical address of https://mydomain.com i can redirect it to https://www.mydomain.com.  The reasoning behind this is that when they use the cononical address, they get a certificate error stating the site is not trusted.  
I could get a refund on the cert and get another SAN cert that will allow 10 host names but that would mean defeat and I am not willing to do that yet.  I know it can be done, as I have seen it happen on bank sites, unfortunately I am not sure how this is done.  I have tried many a things to redirect and rewrite with no luck.  
The web server is IIS 7.5.  Any and all help will be greatly appreciated.
Thank you
0
Comment
Question by:Linear-IT
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
5 Comments
 
LVL 83

Accepted Solution

by:
Dave Baldwin earned 500 total points
ID: 39979051
You can only do a redirect AFTER the connection is made.  That means you have to have a cert for or that includes the domain name that you want to redirect from.
0
 
LVL 53

Expert Comment

by:Scott Fell, EE MVE
ID: 39979369
Or a 301 redirect via web.config

I use alphassl/globalsign https://www.globalsign.com/ssl/domain-ssl/features.html and the cert works both www and naked. (alphassl is the cheap brand same company http://www.alphassl.com )

A wildcard ssl allows any subdomain.

If the redirect does not work, and you know the easy solution is... "I could get a refund on the cert and get another SAN cert...."  Why not just do that?  See if anybody else has a quick fix.
0
 
LVL 83

Expert Comment

by:Dave Baldwin
ID: 39979431
Or a 301 redirect via web.config
Nope.  You can not redirect from HTTPS to HTTP without a cert for the first domain name.  In HTTPS, the connection is negotiated before Anything else.  No cert, no connection, no redirect.

Wildcards are kind of expensive last time I checked.
0
 

Author Closing Comment

by:Linear-IT
ID: 39983094
After more research I found this to be true.  I was hoping I was going to find another way but alas that is not the case.  Thank you!
0
 
LVL 83

Expert Comment

by:Dave Baldwin
ID: 39983477
You're welcome, glad to help.
0

Featured Post

2017 Webroot Threat Report

MSPs: Get the facts you need to protect your clients.
The 2017 Webroot Threat Report provides a uniquely insightful global view into the analysis and discoveries made by the Webroot® Threat Intelligence Platform to provide insights on key trends and risks as seen by our users.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

When coding a Webservice to provide data, the normal way is to create a method that returns a Dataset object.   But a Dataset cannot be used easily from another platform, such as PHP,  FLAS (FLEX) , etc. Solution : Return a XML Document instea…
These instructions are based on installing Owncloud on your new raspberry pi connected with a usb HDD. What do you need Part A? A Raspberry Pi, model B. A boot SD card for the Raspberry Pi. A usb HDD An Ethernet cable to connect to the lo…
The purpose of this video is to demonstrate how to set up the WordPress backend so that each page automatically generates a Mailchimp signup form in the sidebar. This will be demonstrated using a Windows 8 PC. Tools Used are Photoshop, Awesome…
Do you want to know how to make a graph with Microsoft Access? First, create a query with the data for the chart. Then make a blank form and add a chart control. This video also shows how to change what data is displayed on the graph as well as form…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question