"Take Aim, Even Badly" 🙂

How to fix RD Connection Broker, Web Access and Gateway certificates expired.

Open your Server Manager and go to Remote Desktop Services.
 
image 777210
 
Click on Tasks, Edit Deployment Properties.
 
image 780372

Click on Certificates.

image 782506

If any of these are expired, I am going to show you how to get them up to date.
 
Now we need to get into the certificate store. If you haven’t already created an MMC for your certificates, it’s a good idea to do that now. Otherwise you can go to Run and type certlm.msc and hit enter.
 
Otherwise, start a new MMC (Start —> Type MMC) or add it to your existing one. 
 
File, Add/Remove Snap In
 
image 784395
 
Highlight Certificates and click Add.
 
image 786241
 
Next I chose Computer Account
 
image 787906
 
Select Local Computer.
 
image 789576
 
Now hit Finish and OK.
 
image 791340
 
Expand Personal, select Certificates.
 
image 793191
 
Right-click the certificate you would like to use, choose All Tasks, Export.
 
image 794630
 
Click Next
 
image 796250
 
Choose Yes, export the private key. Click Next.
 
image 797878
 
You can leave this as is. Click Next.
 
image 799800
 
This next step is up to you. You can protect it with your own unique password or choose Group or user names and assuming you’re logged in, it should populate your username below.
 
image 701411
 
By default it wants to save your newly created certificate to System32. I elected to click Browse, created a new folder on the C: drive and put my newly created PFX file in there.
 
image 703272
 
Once that’s all done. You can now go back to the Deployment Properties window that we had open earlier. Highlight the Role Service with the expired status and click Select existing certificate…
 
image 705124
 
Click Choose a different certificate and Browse for the one we just exported earlier.
 
image 707133
 
Select Allow the certificate to be added to the Trusted Root Certificate Authorities certificate store on the destination computers and click OK
 
image 709518
 
Now it should say Ready to apply and click Apply. These all have to be done one at a time. If you did everything correctly, the Status should change to OK.
 
image 711095
 
Click OK and you’re done.

Sign Me Up For The Free Assessment!

Sign up here and I will reach out to you to schedule your free assessment.

Thank you for requesting your Free Assessment!