SharePoint 2013 – How to add SSL to a Web Application
Here are some things that need to be done to make SSL work and to remove the ability to hit any sites via NON-SSL. I recommend these settings if you guys plan to run SSL inside the corporate network for the 2013 instance of SharePoint.
Go to IIS on the WFE and do the following:
data:image/s3,"s3://crabby-images/586c6/586c672b9498743ee299b5226db3c0acea5d16d4" alt="Step1SSL"
data:image/s3,"s3://crabby-images/cef3b/cef3bcc296eea2263138737547ac75812c5f1ea9" alt="Step2SSL"
data:image/s3,"s3://crabby-images/a5f89/a5f89e48dc5dc1b56c1cace679954dfcb51ca9da" alt="Step3SSL"
data:image/s3,"s3://crabby-images/10dc2/10dc2ef212552c1449ae67b3f7fca4a3f1e5bc89" alt="Step4SSL"
data:image/s3,"s3://crabby-images/d3194/d3194fe425c81a003ba4290edb8d3ba1089bd120" alt="Step5SSL"
data:image/s3,"s3://crabby-images/35b2f/35b2f759f8e142f4364d148c82a54e8aeaf72151" alt="Step6SSL"
data:image/s3,"s3://crabby-images/e0145/e01453a2933d813648f863c993d512ebf28116a2" alt="Step7SSL"
data:image/s3,"s3://crabby-images/0c96f/0c96f70b294304046155b591b35d5db23e0080f9" alt="Step8SSL"
That should do it.
Go to IIS on the WFE and do the following:
- On the SharePoint – 80 site→ Edit Bindings
data:image/s3,"s3://crabby-images/586c6/586c672b9498743ee299b5226db3c0acea5d16d4" alt="Step1SSL"
- In the Site Bindings dialogue, click Add → in the Type drop down, select https→ in the SSL Certificate drop down, select your cert.
data:image/s3,"s3://crabby-images/cef3b/cef3bcc296eea2263138737547ac75812c5f1ea9" alt="Step2SSL"
- It should look like this when you’re done
data:image/s3,"s3://crabby-images/a5f89/a5f89e48dc5dc1b56c1cace679954dfcb51ca9da" alt="Step3SSL"
- Next, on the SharePoint – 80 site, click on SSL settings
data:image/s3,"s3://crabby-images/10dc2/10dc2ef212552c1449ae67b3f7fca4a3f1e5bc89" alt="Step4SSL"
- Select the check box for Require SSL
data:image/s3,"s3://crabby-images/d3194/d3194fe425c81a003ba4290edb8d3ba1089bd120" alt="Step5SSL"
- Launch the CA. Go to Application Management → Alternate Access Mappings → Edit Public URLs
data:image/s3,"s3://crabby-images/35b2f/35b2f759f8e142f4364d148c82a54e8aeaf72151" alt="Step6SSL"
- Under Alternate Access Mapping Collection, select SharePoint – 80.
- Change the Default to to the SSL site URL (e.g., https://servername.home.texas.com). Make sure intranet, internet, custom and extranet are blank. Click Save.
data:image/s3,"s3://crabby-images/e0145/e01453a2933d813648f863c993d512ebf28116a2" alt="Step7SSL"
- Go back to the WFE and perform an IISReset
- When IIS returns, launch the CA. Remember, after an IISReset SharePoint sites, including the CA, take a minute to launch on the first time in
- When the CA launches, click on General Application Settings → Farm Search Administration→ Search Service Application→ Content Sources →Local SharePoint sites → Under Start Addresses, change http://servername.home.tekxas.com to https://servername.home.tekxas.com. Then run a full crawl.
data:image/s3,"s3://crabby-images/0c96f/0c96f70b294304046155b591b35d5db23e0080f9" alt="Step8SSL"
That should do it.
No comments:
Post a Comment