Installing and Configuring SSL under Windows
Installing and Configuring SSL under Windows require the following Three steps.
1. Check the system and software requirement
2. Setting Up Digital Certificates for SSL under Windows
3. Converting between PEM and DER File Formats for SSL
SSL under Windows: System and Software Requirements
The system and software requirements for using SSL under the Windows operating environment are as follows:
-
a computer that runs Windows 2000 (or later).
-
depending on your configuration,
access to the
Internet and a Web browser such as Netscape Navigator or Internet Explorer.
-
the TCP/IP communications access
method.
-
Microsoft Certificate Services add-on software.
-
if you will run your own CA, the Microsoft Certification
Authority application (which is accessible from your Web browser).
-
for SAS/CONNECT, a client session that runs on
a computer that has a Trusted CA Certificate. This is necessary in order for
a SAS/CONNECT client session to connect to a SAS/CONNECT server session via
a Windows spawner using SSL encryption.
The Windows spawner must run on a computer that has a Trusted CA Certificate and a Personal Certificate.
-
knowledge of your site's security policy, practices,
and technology. The properties of the digital certificates that you request
will depend on the security policies that have been adopted at your site.

Step 1. Configure SSL
Complete information about configuring your Windows operating environment for SSL is contained in the Windows installation documentation and at www.microsoft.com.The following keywords might be helpful when searching the Microsoft Web site:
-
digital certificate services
-
digital certificate
authority
-
digital certificate request
-
site security planning
Step 2. Request a Digital Certificate
Request a Digital Certificate from the Microsoft Certification Authority Request a Digital Certificate from a Certification Authority That Is Not Microsoft Request a Digital Certificate from the Microsoft Certification Authority
Perform the following tasks to request digital certificates that are issued by the Microsoft Certification Authority:
-
System administrator: If you are
running your own CA, use Microsoft Certificate Services to create an active
Certification Authority (CA).
-
User:
-
Use the Certificate Request wizard to request
a digital certificate from an active enterprise CA. The Certificate Request
wizard lists all digital certificate types that the user can install.
-
Select a digital certificate type.
-
Select
security options.
-
Submit the request to an active CA that is configured
to issue the digital certificate.
After the CA issues the requested digital certificate, the digital certificate is automatically installed in the Certificate Store. The installed digital certificate is highlighted, as shown in Digital Certificate Installation in the Certificate Store.
Digital Certificate Installation in the Certificate Store
-
Use the Certificate Request wizard to request
a digital certificate from an active enterprise CA. The Certificate Request
wizard lists all digital certificate types that the user can install.
Request a Digital Certificate from a Certification Authority That Is Not Microsoft
Users should perform the following tasks to request digital certificates that are not issued by the Microsoft CA:-
Request a digital certificate from a
CA.
-
Import the digital certificate to a Certificate
Store by using the Certificate Manager Import wizard application from a Web
browser.
A digital certificate can be generated by using the Certificate Request wizard or any third-party application that generates digital certificates.
Note: The Windows operating environment can import digital certificates that were generated in the UNIX operating environment. To convert from UNIX (PEM format) to Windows (DER format) before importing, see Converting between PEM and DER File Formats for SSL.
Import a Digital Certificate to a Certificate Store
Digital certificates that were issued by a Certification Authority that is not Microsoft can be imported to an appropriate Certificate Store as follows:Certificate Type | Certificate Storage Location |
---|---|
Client | Personal Certificate Store |
Server | Personal Certificate Store |
CA (self-signed) | Trusted Root Certification Authorities |
-
Access the Certificate Manager Import wizard application
from your Web browser.
From the Tools drop-down menu, select Internet Options.
Then select the Content tab, and click Certificates.
Specify the digital certificate to import to a Certificate Store by selecting the Personal tab in the Certificates window, as shown in Digital Certificate Selections for a Personal Certificate Store.
Digital Certificate Selections for a Personal Certificate Store
-
Click Import and follow
the instructions to import digital certificates.
Repeat this task in order to import the necessary digital certificates for the CA, the server, and the client, as appropriate.
-
After you have completed the selections for your
personal Certificate Store, select the appropriate tab to view your selections.
-
To view the details about a digital certificate,
select the digital certificate and click View.
Typical results are shown in Digital Certificate Details Tab.
Digital Certificate Details Tab

Converting between PEM and DER File Formats for SSL
By default, OpenSSL files are created in Privacy Enhanced Mail (PEM) format. SSL files that are created in Windows operating environments are created in Distinguished Encoding Rules (DER) format.
Under Windows, you can import a file that is created in either PEM or DER format. However, a digital certificate that is created in DER format must be converted to PEM format before it can be included in a trust list under UNIX.
Here is an example of converting a server digital certificate from PEM input format to DER output format:
OpenSSL> x509 -inform PEM -outform DER -in server.pem -out server.der
Here is an example of converting a server digital certificate from DER input format to PEM output format :
OpenSSL> x509 -inform DER -outform PEM -in server.der -out server.pem

Hey what a brilliant post I have come across and believe me I have been searching out for this similar kind of post for past a week and hardly came across this. Thank you very much and will look for more postings from you.
ReplyDeletewww.rebeccaomonira.co.uk |
This was the first place that told me the answer. I have added you to my bookmark list to check out new articles you post
ReplyDeletekermitontour |
Just wanted to give a quick shout out and say that I genuinely enjoy reading your articles.
ReplyDeleteappliedsatellitetechnology |
I just read your blog and get the information which searching everywhere. Now it’s become on my top preference of reading for acquiring the updates without hassle.
ReplyDeletecs9988 |
It was wondering if I could use this write-up on my other website, I will link it back to your website though.Great Thanks.
ReplyDeletecharlescmann |
I am very happy to discover your post as it will become on top in my collection of favorite blogs to visit.
ReplyDeletenysmallbusinesshub |
You know your projects stand out of the herd. There is something special about them. It seems to me all of them are really brilliant!
ReplyDeletevegfoodtruck |
So ncie good psot s cinegreat!
ReplyDeleteKeep Your Profit |
It is very helpful for all the people on the web.I wanted to say that it's nice to know that someone else also mentioned this as I had trouble finding the same info elsewhere.
ReplyDeleteFood and Jazz |
this is a very informative page
ReplyDeletefree xbox live
thanks for sharing all information
ReplyDeletefree amazon gift cards
nike air force
ReplyDeletefitflops sale
louis vuitton factory outlet
michael kors outlet store
jordan femmes pas cher
ralph lauren uk
cheap nike sneakers
michael kors outlet store
outlet louis vuitton
coach factory outlet online
zhi20161228
adidas nmd r1
ReplyDeletemont blanc pens
michael kors outlet
polo ralph lauren outlet
mlb jerseys
michael kors outlet store
gucci
adidas yeezy boost
michael kors handbags outlet
coach outlet store
170602yueqin
prada outlet
ReplyDeletetimberland boots uk
columbia sportswear
coach factory outlet
louboutin pas cher
lebron shoes
boston celtics jerseys
pandora rings
oakley sunglasses wholesale
warriors jerseys
chenlina20170718
nice blog take a look.
ReplyDeleteCISCO Certified Partner