Windows 10: Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks

Discus and support Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks in Windows 10 Software and Apps to solve the problem; Opened MMC.exe as adminAdded the Snap in for CertificationsOpen the menu Certifications > PersonalRight-Click on Personal and choose All Tasks >... Discussion in 'Windows 10 Software and Apps' started by Anna Pullman-Rainbolt, Jul 3, 2024.

  1. Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks


    Opened MMC.exe as adminAdded the Snap in for CertificationsOpen the menu Certifications > PersonalRight-Click on Personal and choose All Tasks > Request New CertificateClick Next, Choose the AD Enrollment Certificate PolicyClick Next, Choose Template Computers, then enrollThe Computer template is set to 1 year validity and 6 weeks Expiration .. I cannot modify this template - it is greyed out. So, I Duplicated this template to update the Validity to 2 years and renewal to 1 year. I used that template, and it was still set to expire in 6 weeks.Thou

    :)
     
    Anna Pullman-Rainbolt, Jul 3, 2024
    #1

  2. Creating a self-signed cert and trusting it for windows RDP (no domain)

    I can use windows RDP to remote control my home PC (through a VPN), but I always get this warning:


    Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks [​IMG]


    Do I need to manually generate a self signed cert and install it?

    Or has this already happened and can I trust the one that it is already providing?

    Does "Don't ask me again for connections to this computer" do this?, or does this just check the name and bypass checking the certificate at all?

    I still want to use the self signed certificate for verification. I just want my laptop to trust the self-signed cert.

    I'm on windows 10.
     
    Tom Jenkinson, Jul 3, 2024
    #2
  3. TomT Win User
    Adding Self Signed Cert to Chrome ?

    Hi

    I run a local linux web server and it has a self signed certificate on it.
    Every few days when I access it I get:

    Your connection is not private Attackers might be trying to steal your information from 192.168.0.100 (for example, passwords, messages, or credit cards). Learn moreNET::ERR_CERT_AUTHORITY_INVALID

    If I proceed, then it's fine for a few days.
    Access is only available to this server from internal devices, it's not Internet facing.

    Is there any way I can add that cert to Chrome so I no longer get these warnings ?
    If so... How ?

    Thanks
     
    TomT, Jul 3, 2024
    #3
  4. Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks

    Adding Self Signed Cert to Chrome ?

    Self signed certificates cannot be vouched for. Browsers do not trust them at all. They are used to enable encryption where otherwise you could be paying a pretty penny for a CA but with self-signed certs there is no verification to prove the certificate is legitimate hence the error message you are getting. The trust is pretty much zero with them. With trusted certificates they can be verified through the CA (certificate authority) and everything can be linked back without fail or question. Self signed certificates have no authority to govern and verify it's authenticity. Even though you are technically the authority and you can vouch for the certificate thats now how the standards of the internet work.

    You can import certificates into your browser manually by going into your settings.
    Also, you do know that you can configure the server to deny all incoming/outgoing connections other than the ones you choose? When you say your server is not internet facing is that because you don't know to configure your firewall or because you do and it's just through choice? If you're using Linux, just like any OS, you NEED to reguarly update both the system and the software installed. You could have unaddressed vulnerabilities.

    Besides, just an FYI, I'm not sure you've heard about pivoting but it's basically what hackers use when they want to access internal networks that otherwise are not freely available externally. It's called pivoting because they compromise one target computer and then pivot from that onto the local network. And so your server doesn't have to be online in order to be compromised. All someone needs to do is get access to either your local network and/or a computer connected to it with an external connection and they can map your ENTIRE network, do whatever they want and then disappear. Also, if your server is installed on a computer with a built-in wireless adapter and/or other connectivity features they can be enabled and your computer instructed to access the nearest wireless connection. Hell, your compromised system can then also be made to hack wireless networks.

    I might be running away from the topic here and so I shall return back to it.
    Import the cert and you should be fine.
     
    supermammalego, Jul 3, 2024
    #4
Thema:

Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks

Loading...
  1. Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks - Similar Threads - Self Signed Cert

  2. Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks

    in Windows 10 Gaming
    Self Signed Cert on 2016 Windows server only creates cert valid for 6 weeks: Opened MMC.exe as adminAdded the Snap in for CertificationsOpen the menu Certifications > PersonalRight-Click on Personal and choose All Tasks > Request New CertificateClick Next, Choose the AD Enrollment Certificate PolicyClick Next, Choose Template Computers, then...
  3. old certs

    in Windows 10 Gaming
    old certs: i need to print my old mta certs windows 7 certs and fundamentals from old emails i no longer have https://answers.microsoft.com/en-us/windows/forum/all/old-certs/549ba35e-9528-4e3c-8424-c3fb005dd0a6
  4. old certs

    in Windows 10 Software and Apps
    old certs: i need to print my old mta certs windows 7 certs and fundamentals from old emails i no longer have https://answers.microsoft.com/en-us/windows/forum/all/old-certs/549ba35e-9528-4e3c-8424-c3fb005dd0a6
  5. Can't validate certs on Windows 10 machine

    in AntiVirus, Firewalls and System Security
    Can't validate certs on Windows 10 machine: I recently had my help desk migrate my laptop from one domain account to an account on a different domain. There was a lot of copy/paste going on as I watched the process as well as editing in the registry. Needless to say, I have little faith in the help desk and I'm...
  6. Can't validate certs on Windows 10 machine

    in Windows 10 Gaming
    Can't validate certs on Windows 10 machine: I recently had my help desk migrate my laptop from one domain account to an account on a different domain. There was a lot of copy/paste going on as I watched the process as well as editing in the registry. Needless to say, I have little faith in the help desk and I'm...
  7. Can't validate certs on Windows 10 machine

    in Windows 10 Software and Apps
    Can't validate certs on Windows 10 machine: I recently had my help desk migrate my laptop from one domain account to an account on a different domain. There was a lot of copy/paste going on as I watched the process as well as editing in the registry. Needless to say, I have little faith in the help desk and I'm...
  8. Adding Self Signed Cert to Chrome ?

    in Browsers and Email
    Adding Self Signed Cert to Chrome ?: Hi I run a local linux web server and it has a self signed certificate on it. Every few days when I access it I get: Your connection is not private Attackers might be trying to steal your information from 192.168.0.100 (for example, passwords, messages, or credit cards)....
  9. Digital signing cert validity

    in Windows 10 Network and Sharing
    Digital signing cert validity: Why is it when I download Windows 10 Media Creator from microsoft.com/en-ca/software… and then do a Right click on the file properties | Seclect digital signatures | Click on General tab and View Certificate here it shows valid from 7/12/2018 to 8/8/2019 [ATTACH]...
  10. digi cert

    in Windows 10 Network and Sharing
    digi cert: In windows 10 How do I remove DigiCert from my computer? They are evil and interfere with my facebook videos. https://answers.microsoft.com/en-us/windows/forum/windows_10-networking/digi-cert/f75c189e-5a97-4270-a926-55f534408b62