Sign Up for Training |
insightsoftware Company Site
Submit a Request
Become a Jet Insider
Give Feedback

Create a CSR in IIS 7


A Certificate Signing Request (CSR) is a block of encrypted text that is generated on the server that a security certificate will be used on.  This information is then sent to a Certification Authority which, in turn, creates the security certificate.

The CRS contains information that will be included in your certificate, such as your organization name, common name (domain name), locality, and country.  It also contains the public key that will be included in your certificate.  A private key is usually created at the same time that you create the CSR.

Creating a CSR in Microsoft IIS 7

  1. In the Windows search bar, search for Internet Information Services (IIS) Manager

    Right-click on the Desktop App and select Run as administrator
  2. In the panel to the left, click on the server name
  3. From the center panel, double-click the Server Certificates button in the Security section (it is near the bottom)
  4. From the Actions panel (on the right), click on Create Certificate Request.  This will open the Request Certificate wizard.
  5. In the Distinguished Name Properties window, enter the information as follows:

    Common Name - The name through which the certificate will be accessed (usually the fully-qualified domain name, e.g.,

    Organization - The legally registered name of your organization/company.

    Organizational unit - The name of your department within the organization (frequently this entry will be listed as "IT," "Web", "Web Security," or is simply left blank).

    City/locality - The city in which your organization is located.

    State/province - The state in which your organization is located.

    Country/region - Enter the two-digit country code.  If needed, you can find your two-digit country code in Digicert's list.

  6. Click the Next button
  7. In the Cryptographic Service Provider Properties window, enter the following information and then, click Next:

    Cryptographic service provider - In the drop-down list, select Microsoft RSA SChannel..., unless you have a specific cryptographic provider.

    Bit length - In the drop-down list, select 2048 (or higher).

  8. Enter the file name and location for your CSR file.

    Remember the filename that you choose and the location to which you save it. You will need to open this file as a text file and copy the entire body of it (including the Begin and End Certificate Request tags) into the online order process when prompted.


Was this article helpful?
0 out of 0 found this helpful