Views:

Renew SSL Cert
Internal SSL Certs are only valid for 1 year. Ensure you have a calendar reminder of when this will occur and complete the below prior to the expiration otherwise the NAV Application will stop functioning.
 

IIS Manager


Connect to the IIS Manager on the server
Option #1 - To start IIS Manager from the Run dialog box

  1. On the Start menu, click All Programs, click Accessories, and then click Run.
  2. In the Open box, type inetmgr and then click OK.


Option #2 - To start IIS Manager from the Administrative Services console

  1. On the Start menu, click All Programs, click Accessories, and then click Run.
  2. In the Run text box, type control panel, and then click OK.
  3. In the Control Panel window, click Classic View, and then double-click Administrative Tools.
  4. In the Administrative Tools window, double-click Internet Information Services.


Renew SSL Certificate

    1. Within the IIS Manager select the Server Name instance on the left-hand pane

cid:image002.png@01D5FEC5.9D27C7A0
 

    1. In the center pane locate the “Server Certificates”

cid:image003.png@01D5FEC5.9D27C7A0

    1. On the right-hand pane click on “Create Self-Signed Certificate”

cid:image004.png@01D5FEC5.9D27C7A0

    1. Give the cert a friendly name. Example: SSLInternalCert2019
    2. Click OK
    3. The new cert will appear in the center pane
    4. Double Click on the cert
    5. Click on the Details Tab
    6. Scroll Down to the thumbprint and select it

cid:image005.png@01D5FEC5.9D27C7A0

    1. Highlight the Thumbprint and copy to a text pad

cid:image006.png@01D5FEC5.9D27C7A0

    1. Remove all spaces, including the hidden space in the front
    2. Select all and copy the thumbprint
    3. Click Ok to close the window
    4. Select the Newly created cert and right click export

cid:image007.png@01D5FEC5.9D27C7A0

    1. Enter a file location for the Export and a password. You will use this cert to install on each server\workstation required.




BC Service Tier Update
DynamicsBC Cert Installation

    1. Take the cert export you created in step 15 and copy to the Server
    2. Double Click on the SSL Cert and install it to the LOCAL MACHINE -> next all the way to complete

cid:image008.png@01D5FEC5.9D27C7A0

    1. Double Click on the SSL Cert again and ensure the cert is installed to the Trusted Root Certification authorities -> Next till completed

cid:image009.png@01D5FEC5.9D27C7A0


BC Admin Console

    1. Within the BC Admin Console select the Server Name instance on the left-hand pane
    2. Select the Service tier to update (DynamicsBC130Web)

cid:image010.png@01D5FEC5.9D27C7A0

    1. In the center pane, click Edit
    2. Delete the thumbprint current in the service tier and paste the newly created thumbprint

cid:image011.png@01D5FEC5.9D27C7A0

    1. Click on Save
    2. On the Left-hand pane select Microsoft Dynamics 365 Business Central
    3. In the center pane select the BC service tier (DynamicsNC130Web) just updated, right click and restart the tier

cid:image012.png@01D5FEC5.9D27C7A0
 

    1. Test the BC client on the server to ensure the tier started and the client Launches.
    2. Do this for all services that require the SSL Cert. The tier will not start if the service is not updated with the current SSL Cert.



Microsoft



Workstations
Update Local Workstations

    1. Download the exported Cert
    2. Install on each workstation
    3. Launch BC client