locked
Cannot Log In & SSL Certificate RRS feed

  • Question

  • I had to renew the SSL certificate but now I cannot login anymore. I get to the login page but after entering the username and password I get right back to the login page. I installed the new certificate on the server where CRM is hosted and did bind it to the CRM website. I also installed the new certificate on the server hosting ADFS and also did bind it to the website hosting ADFS. Further, in ADFS under Service->Certificates I did "Set Service Communications Certificate". What else am I missing to get the login to work again. Btw, this is on CRM 2011 on-premises with IFD.
    Monday, March 3, 2014 7:50 PM

Answers

  • This is resolved now. In PS I did a update-adfscertificate -urgent. Then in CRM Deployment Manager I did run the Configure Claims-Based Authentication wizard again choosing the new certificate. Then in ADFS Manager I did an update from metadata for both the token-decrypting and token-signing.
    • Marked as answer by hfaun Monday, March 3, 2014 10:12 PM
    Monday, March 3, 2014 10:12 PM

All replies

  • Hi

    Did you try clearing history of browser ?

    Monday, March 3, 2014 8:02 PM
  • signing certificate in adfs was not updated but the service communications certificate was updated. AutoCertificateRollover is set to TRUE so the signing and decryption certificates also should have been updated. The procedure to update those manual seems less than trivial so I am somewhat hesitant to do this. Any idea how those certificates could be automatically be updated or what prevents them from being automatically updated?
    Monday, March 3, 2014 8:43 PM
  • This is resolved now. In PS I did a update-adfscertificate -urgent. Then in CRM Deployment Manager I did run the Configure Claims-Based Authentication wizard again choosing the new certificate. Then in ADFS Manager I did an update from metadata for both the token-decrypting and token-signing.
    • Marked as answer by hfaun Monday, March 3, 2014 10:12 PM
    Monday, March 3, 2014 10:12 PM