Flash Sale:75% Off Hosting + Free DomainEnds in13h47m14sView Plans
Hostvento logoHostvento

Install a .pfx SSL Certificate on IIS

This guide shows you how to import a .pfx certificate file into IIS on a Windows Server and connect it to your website. You need admin access to the server.

SSL and Security2 min read19 steps12 screenshots

What are these things?

IIS (Internet Information Services) is the program on Windows Server that shows websites. An SSL certificate is a digital badge that makes your site safe over HTTPS. A .pfx file is a single package that holds your certificate and your private key together, protected by a password. It is like a locked bag with everything inside.

Before you start

Copy the .pfx file to the server. Make sure you know its password. Keep a copy of the file in a safe place.

Step 1: Import the certificate

  1. Log in to the server.
  2. Open Start, type inetmgr and press Enter. This opens IIS Manager.
  3. In the left panel, click your server name.
  4. In the middle, double-click Server Certificates.
  5. In the right panel, click Import.
  6. Click the ... button next to Certificate file (.pfx) and choose your file.
    Install PFX option
    Certificate Import Wizard
    file-import-section
    Certificate Store Window
  7. Type the password.
  8. Set Select Certificate Store to Personal or Web Hosting. Web Hosting is useful when you host many sites.
  9. Click OK. Your certificate now appears in the list.
    password-reset

Step 2: Bind it to your website

A binding links a certificate to a website and a port.

  1. In the left panel, expand Sites and click your website.
  2. In the right panel, click Bindings.
  3. Click Add.
  4. Set Type to https.
  5. Keep the port at 443.
    The import was successful
  6. Type your domain in Host name if you host more than one site.
  7. In SSL certificate, pick your certificate from the list.
    IIS Manager
  8. Click OK, then Close.

Step 3: Test

  1. Open https://yourdomain.com in a browser.
  2. Look for the padlock.

If it does not work

  • Check that port 443 is open in the Windows firewall and in any network firewall.
  • Check that the certificate name matches your domain.
  • Check that the certificate has not expired.
  • Restart the site in IIS Manager using Restart in the right panel.
    tree structure of the server
    popup message
Tip: Menu names may look a bit different on older Windows Server versions, but the steps are very similar.

Quick recap

  • A .pfx file holds the certificate and private key.
  • Import it in Server Certificates in IIS Manager.
    select the Server
    Server Certificates
  • Add an https binding on port 443 for your site.
    install SSL certifcate
  • Test with HTTPS in a browser.