Configuring SSL Bridging (HTTPS to HTTPS) with ISA Server 2000 (Windows SharePoint Services 2.0)
Updated: 08-22-2005
To configure your servers for SSL bridging: SSL termination, you need:
-
One or more servers running Microsoft Windows SharePoint Services.
-
One or more devices to act as a reverse proxy server, such as a computer running Microsoft Internet Security and Acceleration (ISA) Server 2000.
-
A public DNS server.
-
An SSL certificate for your proxy server.
-
An SSL certificate for your servers running Windows SharePoint Services (each server must use the same SSL certificate).
Important: The following configuration steps assume that you are using ISA Server 2000, Service Pack 1 or later, as your reverse proxy server and that you have set it up in integrated mode and that ISA Server 2000 Feature Pack 1 is installed.
The process of configuring SSL bridging consists of the following steps:
-
Install and configure your server farm to run Windows SharePoint Services.
-
Install an SSL certificate on the server or servers running Windows SharePoint Services in your server farm.
-
Create a new public DNS entry to map your public fully qualified domain name (FQDN) to the IP address you will use on the public interface of your reverse proxy server.
-
Configure the network interfaces in the proxy server to respond to the appropriate IP addresses.
-
Install an SSL certificate on the reverse proxy server.
-
Configure the proxy server/firewall to allow Windows SharePoint Services to make connections to the Internet when necessary.
-
Edit your Web.config file to allow Windows SharePoint Services to make connections through the proxy server to the Internet when necessary.
-
Configure the proxy server to listen for requests on IP addresses.
-
Create a destination set.
-
Create a Web publishing rule.
