Link to home
Start Free TrialLog in
Avatar of lianne143
lianne143Flag for United States of America

asked on

On the RDP server manager certificate windows - I get RD connection broker , RD Web access... status is expired

Hi

We have Windows 2012 RDP server and we use a link similar as shown below to access our RDP server.
https://desktop.parkview.wales.sch.uk/Rdweb

The SSL certificate had expired a week ago. I had bought the new SSL certificate from the SSl provider.
There were three new certificates provided to me.
 “ QuoVadisOVIntermediateCertificate.crt”
 “QuoVadisOVRootCertificate.crt”
 “desktop.parkview.wales.sch.uk. crt”

On the MMC of the RDP server- imported the QuoVadisOVIntermediateCertificate.crt to the
Intermediate Certification Authorities - Certificate folder
and the QuoVadisOVRootCertificate.crt to the Trusted Root Certification Authorities- Certificate folder and finally the desktop.parkview.wales.sch.uk.crt to the Personal store & did the site bindings .

When I do the RDP externally I get: The remote computer could not be authenticated due to problems with its security certificate.
When investigating, On the RDP server- server manager- Remote desktop services-Tasks- Edit deployment services- Certificates-Manage certificates window- Please see the snapshot it says:
RD Connection Broker- Enable single sign on – Expired
RD Connection Broker- Publishing - Expired
RD Web access – Expired
RD Gateway-Expired.

So I clicked choose a different certificate and when I browse to the desktop where the new SSL desktop.parkview.wales.sch.uk. crt is located and it is looking for a DER Encoded binary X.509(*.pfx)
which doesn’t exist.

Please let me know how if I am missing anything and how to sort this.
Any help would be great.
Thanks in advance
RD-Expired.png
SOLUTION
Avatar of David Johnson, CD
David Johnson, CD
Flag of Canada image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of lianne143

ASKER

Thanks David
I clicked - Select existing certificate- and again it gives me two option,
When i choose the first option (Apply the certificate ....  and select Allow the certificate to be added....) the error windows popped as attached  and clicked ok.
and did the same for all.
It says ready on the state and went to warning state later . I then restarted the RDP server  - the status goes back to expired state again.

Second option is : choose a different certificate and when I browse to the desktop where the new SSL desktop.parkview.wales.sch.uk. crt  is located and it is looking for a DER Encoded binary X.509(*.pfx and this format does not exist.
Could-not.png
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I had exported the certificate into .pfx on the server desktop
and imported the .pfx certificate into all the following as shown in the snapshot and the remote access is working fine now :)
RD Connection Broker- Enable Single Sign On
RD Connection Broker- Publishing
RD Web Access
RD Gateway
Thanks
RD-manager.png