"Take Aim, Even Badly" 🙂

How to fix RD Connection Broker, Web Access and Gateway certificates expired.

Open your Server Manager and go to Remote Desktop Services.
image 777210
Click on Tasks, Edit Deployment Properties.
image 780372

Click on Certificates.

image 782506

If any of these are expired, I am going to show you how to get them up to date.
Now we need to get into the certificate store. If you haven’t already created an MMC for your certificates, it’s a good idea to do that now. Otherwise you can go to Run and type certlm.msc and hit enter.
Otherwise, start a new MMC (Start —> Type MMC) or add it to your existing one. 
File, Add/Remove Snap In
image 784395
Highlight Certificates and click Add.
image 786241
Next I chose Computer Account
image 787906
Select Local Computer.
image 789576
Now hit Finish and OK.
image 791340
Expand Personal, select Certificates.
image 793191
Right-click the certificate you would like to use, choose All Tasks, Export.
image 794630
Click Next
image 796250
Choose Yes, export the private key. Click Next.
image 797878
You can leave this as is. Click Next.
image 799800
This next step is up to you. You can protect it with your own unique password or choose Group or user names and assuming you’re logged in, it should populate your username below.
image 701411
By default it wants to save your newly created certificate to System32. I elected to click Browse, created a new folder on the C: drive and put my newly created PFX file in there.
image 703272
Once that’s all done. You can now go back to the Deployment Properties window that we had open earlier. Highlight the Role Service with the expired status and click Select existing certificate…
image 705124
Click Choose a different certificate and Browse for the one we just exported earlier.
image 707133
Select Allow the certificate to be added to the Trusted Root Certificate Authorities certificate store on the destination computers and click OK
image 709518
Now it should say Ready to apply and click Apply. These all have to be done one at a time. If you did everything correctly, the Status should change to OK.
image 711095
Click OK and you’re done.

Sign Me Up For The Free Assessment!

Sign up here and I will reach out to you to schedule your free assessment.

Thank you for requesting your Free Assessment!