Uploading the DC Certificate (optional)
You can upload multiple DC certificates. Upload a certificate that permits LDAP over SSL.
- Click the Upload Certificate Tab.
- Obtain the certificate from the DC by opening a new web browser window to https://<domain_controller>:636 (where domain_controller is your DC). Note that this is a secure HTTPS URL, so you are prompted to accept a certificate. Click View Certificate.
- Click the Details tab, and then click Copy to File.
- Select Base-64 encoded x.509 (.CER) from the list of export options (this is important). Provide a name and location for the file (c:dccert.cer) and finish the wizard.
- Locate the exported certificate file in explorer and rename it with a .txt extension (dccert.txt). Open the file in notepad and copy the entire contents to the clipboard. The following is an example of the certificate file contents:
—–BEGIN CERTIFICATE—–
MIIFxDCCBKygAwIBAgIKJWUSwAAAAAAAAjANBgkqhkiG9w0BAQUFADBVMRMwEQYK
CZImiZPyLGQBGRYDY29tMRIwEAYKCZImiZPyLGQBGRYCaHAxFzAVBgoJkiaJk/Is
ZAEZFgdhdGxkZW1vMREwDwYDVQQDEwh3aW5kb3pDQTAeFw0wNjA4MjIyMDIzMTFa
Fw0wNzA4MjIyMDIzMTFaMCAxHjAcBgNVBAMTFXdpbmRvei5hdGxkZW1vLmhwLmNv
bTCBnzANBgkqhkiG9w0BAQEFAAOBjQAwgYkCgYEAy4zeh3iXydUAWKVHIDsxLJ6B
aRuVT9ZhkL5NQHIDeRjumsgc/jHSERDmHuyoY/qbF7JMhJ9Lh9QQHUg8QfEYsC1y
qTvgisrZeHtvmrmecvSxZm27b4Bj5XYN0VYcrwqKnH7X/tVhmwqGls7/YZyahNU1
lGB2OjoCq5eJxX+Ybx0CAwEAAaOCA00wggNJMAsGA1UdDwQEAwIFoDBEBgkqhkiG
9w0BCQ8ENzA1MA4GCCqGSIb3DQMCAgIAgDAOBggqhkiG9w0DBAICAIAwBwYFKw4D
…output truncated…
—–END CERTIFICATE—–
- Return to the OA Upload Certificate screen, paste the certificate contents into the window, and then click Upload.