May 23 2018 05:56 PM
Dear All,
ADFS is deployed in our environment and SSL certificate has subject alternative name (SAN) entries for required 3 domains:
sts.domain1.com
sts.domain2.com
sts.domain3.com
But now we have another requirement for DRS (Device Registration Service) to be configured.
But there are no SAN entries in the SSL certificate installed on our ADFS farm:
enterpriseregistration.domain1.com
enterpriseregistration.domain2.com
enterpriseregistration.domain3.com
Do we have to deploy new SSL certificate with SAN entries for
enterpriseregistration.domain1.com, enterpriseregistration.domain2.com, enterpriseregistration.domain3.com
?
Do we have to reconfigure ADFS farm again?
Is it possible, we only have to change SSL certificate with required new entries and we dont redeploy ADFS farm?
Please help. I will appreciate your replies and solutions for given problem.
Thanks again.
May 24 2018 06:19 AM
May 24 2018 07:52 AM
May 24 2018 11:51 AM
SolutionYes mate, then install that certificate on the ADFS servers. This will need to be under change control as you are revoking and re-keying your certificate so may cause a small outage....