What is IIS?
IIS (Internet Information Services) is the program on Windows Server that shows websites to visitors. An SSL certificate is a digital badge that makes the site safe over HTTPS. To get one, you first make a CSR. A CSR (Certificate Signing Request) is a block of text with details about your site. You send it to the certificate company, and they send back your certificate.
Step 1: Create the CSR
- Log in to the server.
- Open Start, type inetmgr and press Enter.
- Click your server name in the left panel.
- Double-click Server Certificates.
- In the right panel, click Create Certificate Request.
- Fill in the form. Common name is your domain, such as
www.yourdomain.com. Add your organization, city, state and country. - Click Next. Keep the provider as default and choose a bit length of 2048 or higher.
- Click ... to choose a place to save the file, such as
C:\csr.txt, then click Finish. - Open the file. Copy all the text and paste it into the order form of your certificate company.
Step 2: Complete the request
After the company checks your details, they send you a certificate file, often ending in .cer or .crt.
- Save the file on the server.
- In IIS Manager, open Server Certificates again.
- Click Complete Certificate Request in the right panel.
- Choose your certificate file.
- Type a friendly name, like
yourdomain 2025. It is only for you. - Click OK.
If the company also sent intermediate files, install them in the Windows certificate store first. Double-click each file and choose Install Certificate.
Step 3: Bind it to your site
- Expand Sites and click your website.
- Click Bindings in the right panel.
- Click Add.
- Choose https, keep port 443.
- Pick your certificate in the SSL certificate list.
- Click OK.
Step 4: Test
Open https://www.yourdomain.com and check for the padlock.
Quick recap
- Create a CSR in Server Certificates.
- Send it to the certificate company.
- Use Complete Certificate Request with the file you get back.
- Add an https binding on port 443.