Skype for Business Edge Servers Not Showing Certificate After Import

While importing the External Certificate on Skype for Business Edge Servers via deployment wizard, it didn't appear in the list to assign the certificate. While opening the certificate, it didn't show the "You have a private key that corresponds to this certificate". The issue can be resolved by importing the certificate via MMC, repairing it, and then assigning it via Lync deployment wizard. 
Click on Run and type MMC
  • Select File and then Add Remove Snap-In
  • Select Certificates, Computer Account and Click on Finish
  • Click OK
  • Expand Certificates (Local Computer) and Import Certificate (Right Click -> All Tasks --> Import)
Open Command Prompt as Admin and run following cmd
certutil -repairstore my "11 11 11 11 11 11 11" 
Where "11 11 11 11 11 11 11" is the serial number of your certificate under the Details Tab.
Once the above cmd is successfully executed, in the Certificates snap-in, right-click Certificates, and then click Refresh. The certificate now should have an associated private key. 
  • Now Go back to Lync/SfB Deployment Wizard, select Request, Install or Assign Certificates
  • Select External Edge Certificate (If shown) and Select Assign
  • Select New Certificate and follow the wizard to complete the process
  • Restart Lync/SfB Services (It's good to reboot the server at this time to avoid any unexpected issue)
  • Check services, External Lync functionality, and Federation

No comments:

Post a Comment