Obtaining and Backing Up Server Certificates

Applies To: Windows Server 2003, Windows Server 2003 with SP1

Server certificates contain information used in establishing identities over a network, which is a process called authentication. Similar to conventional forms of identification, certificates enable Web servers and users to authenticate each other before establishing a SSL connection.

Server certificates contain information about the server that allows the client to positively identify the server before sharing sensitive information. Client certificates contain personal information about the clients requesting access to your site that allow you to positively identify them before allowing them access to the site.

Certificates include keys used in establishing an SSL secure connection. A key is a unique value used to authenticate the server and the client in establishing an SSL connection. A public key and a private key form an SSL key pair. Your Web server uses this key pair to negotiate a secure connection with the user's Web browser to determine the level of encryption required for securing communications.

You can obtain a server certificate in one of two ways: issue your own server certificate or obtain a server certificate from a certification authority.

To request and install your own server certificate, use the Web Server Certificate Wizard to create a customizable service for issuing and managing certificates. You can create server certificates for the Internet or for corporate intranets, giving your organization complete control over certificate management policies.

To obtain a server certificate from a certification authority, follow these steps:

  1. Do either of the following:

    • Find a certification authority that provides services that meet your business needs and request a server certificate.

      –Or–

    • Use the Web Server Certificate Wizard to create a certificate request that you can send to the certification authority.

  2. After the certificate is processed and returned to you, use the Web Server Certificate Wizard to install the certificate.

For more information about SSL certificates, including how to obtain, install, and back up server certificates, see Certificates_IIS_SP1_Ops. For more information about Microsoft Certificate Services, see "Certificate Services" in Help and Support Center for Windows Server 2003.