NOTE: If you are using an anti-virus software, please add the list of folders to exclude from antivirus scans. For more information, see Folders to Exclude from Antivirus Scans.
Use the standard installation steps if you do not have IIS set up, and you would like to install IIS through the PrinterLogic installation wizard.
Step 1: Provision a Server
Step 5: Install PrinterLogic
Step 8: Log in to the Admin Console
A single server is required to install PrinterLogic. This server may be either physical or virtual (i.e. a VM), and must be running on a supported operating system. For a list of the hardware requirements for the server, see Requirements and Supported Environments. The following steps identify the process for provisioning a server to be used with PrinterLogic.
- Procure hardware or a virtual machine to host a supported operating system.
- Install the supported operating system on the server.
- Join the server to the domain.
- If a failover server is desired, simply provision a second server and complete the above steps for procuring the secondary server.
Instead of connecting to the PrinterLogic server using the FQDN of the server, the recommendation is to create an alternate DNS record (either an A record (preferred) or a CNAME (record)) that points to the server, which is required for failover to a secondary server and usually makes it easier to remember and type (e.g. using printers.domain.com instead of HQ-PISRV08R2.domain.com).
- Download and install OpenSSL from Shining Light.
- Create a folder in any location (My folder location is C:\OpenSSL).
- Open a command prompt [cmd] execute the following command.
- Generate your Certificate request (CSR), specifying an SHA256 signature hash . Execute the following command.[point in to the OpenSSL installation folder\bin (C:\OpenSSL-Win32\bin)].
- When you are prompted for a few certificate fields, enter those fields as they appear.
- PrivateKey.key - contains the un-encrypted version of your private key – protect this file, as somebody who obtains it along with your signed public key can impersonate you.
CertificateRequest.csr (your certificate signing request, which is not sensitive).
- Check which hash algorithm is currently used and execute the following command.
- If this command returns SHA256, skip to step 9.
- Run the following command to configure the CA to use SHA256 for CNG hashes
- Restart Certificate Services.
- Execute Step 7 and make sure the current hash algorithm is SHA256
- Open a browser.
- Enter http://localhost/certsrv.
- Click Request a Certificate.
- Click Advanced Certificate Request.
- Click the second link as shown below.
- Navigate to the folder where CertificateRequest.csr is located (c:\OpenSSL).
- Open CertificateRequest.csr in a text editor and copy the encoded value.
- In the browser, paste the encoded values you copied in to the Base-64-encoded certificate request as shown below.
- Click Submit.
- Click the Base 64 encoded option and then click Download Certificate.
Copy your PrivateKey.key and CertNew.cer (from c:\OpenSSL) to the OpenSSL installation folder\bin (c:\OpenSSL-Win32\bin).
- Open a command prompt and execute the following script.
- Open the IIS Manager (run > inetmgr).
- Navigate to Server Certificates.
- Click Import.
- Select CertNew.pfx from the location you set up (c:OpenSSL-Win32\bin\CertNew.pfx).
openssl req -nodes -sha256 -newkey rsa:2048 -keyout C:\OpenSSL\PrivateKey.key -out C:\OpenSSL\CertificateRequest.csr
The following files will be generated:
certutil -getreg ca\csp\CNGHashAlgorithm
By default, the value shown above should return SHA1.
certutil -setreg ca\csp\CNGHashAlgorithm SHA25
net stop CertSvc && net start CertSvc
Your .cer file will be downloaded.
openssl pkcs12 -inkey PrivateKey.key -in CertNew.cer -export -out CertNew.pfx
Make sure you point to the OpenSSL-Win32 installation folder\bin (C:\OpenSSL-Win32\bin).
Install the Certificate
- Copy the SSL certificate to a location on the server.
- Click Start > Administrative Tools.
- Click Internet Information Services (IIS) Manager.
- In the Connections column, click the name of the server.
- Double-click Server Certificates.
- In the Actions column, click Complete Certificate Request.
- Click the Browse (...) button and select the server certificate you received from the certificate authority.
- Type any friendly name you want so you can keep track of the certificate on the server.
- Click OK.
If the certificate does not have a .cer extension, select View All Types.
If successful, you will see your newly installed certificate in the list. If you receive an error stating that the request or private key cannot be found, make sure you are using the correct certificate and that you are installing it to the same server that you generated the CSR on. If you are sure of those two things, you may just need to create a new Certificate Request and reissue/replace the certificate. Contact your certificate authority if you have problems with this.
Bind the Certificate to a Website
- In the IIS Manager under the Connections column, expand the Sites folder and click the website to which you would like to bind the certificate.
- Click Bindings.
- Click Add.
- In the Type: field, select https:.
- In the SSL Certificate field, select the certificate that you installed.
- Click OK.
- Click Close.
Install any Immediate Certificates
Most SSL providers issue server certificates off of an Intermediate certificate so you will need to install this Intermediate certificate to the server as well or your visitors will receive a Certificate Not Trusted Error. You can install each Intermediate certificate (sometimes there is more than one) using the following instructions.
- Download the intermediate certificate to a folder on the server.
- Double-click the certificate to open the certificate details.
- At the bottom of the General tab, click Install Certificate to start the certificate import wizard.
- Click Next.
- Select Place all certificates in the following store.
- Click Browse.
- Check Show Physical Stores and then expand the Intermediate Certification Authorities folder.
- Select the Local Computer folder.
- Click OK.
- Click Next.
- Click Finish.
- (Optional) Restart IIS to start giving out the new certificate.
NOTE: You can verify that the certificate is installed correctly by visiting the site in your web browser using https instead of http.
- Log in to the server you are using for PrinterLogic.
- Click Start.
- In the Search bar, type IIS Manager and then click Internet Information Services (IIS) Manager.
- When the IIS Service Manager window opens, click the arrow to the left of the server name.
- Click the arrow to the left of Sites.
- Click Default Web Site.
- Click Bindings.
- Click Add.
- When the Add Site Binding Window appears, select https in the Type field, enter 443 in the port field, and then select WMSVC in the SSL Certificate field.
- Click OK.
- In the Site Bindings window, click Close.
- Click Restart.
Prior to the installation, you should have received an email with a link to the installation file you will use to download the installation files. If you have not received this email or link, please see your PrinterLogic sales representative. The following steps describe the process for installing PrinterLogic on your supported server.
- Open the installation email you received from your PrinterLogic sales representative or partner.
- Copy the link, which should appear as shown in the following example.
- Log in to your PrinterLogic server.
- Open a browser and paste the link you copied into the Address bar.
- Download the files to a folder on the PrinterLogic server.
- When the system finishes downloading the installation files, click Run.
- In the User Account window, click Yes when the system asks if you would like to make changes to the computer.
- Click Standard.
- Click Next.
NOTE: Do not copy and paste the link below into your browser. It is used here only as an example.
The following option will appear only if you have more than one website set up in the Internet Information Services (IIS) Manager on your PrinterLogic server.
The following image shows the Internet Information Services (IIS) Manager with more than one website.
You can delete one of the websites in the Internet Information Services (IIS) Manager and then try the PrinterLogic installation wizard again, or you can select one of the websites in the PrinterLogic installation wizard and then click Next.
The installation wizard will run automatically and add the following items to your server.
- PrinterLogic website files in the default website location
NOTE: The PrinterLogic database will not be created during installation. Rather, it is set up the first time you log in to the Admin Console.
The installer will notify you when the installation is complete
- When the login screen appears, click anywhere in the Admin Username field and type the username of the person who will access the Admin Console.
- In the Email Address field, type the email address that the system will associate to the username.
- Create a password that the user will enter to access the Admin Console.
- Click Create and Log In.
The email address will be used for features such as password recovery and alerts.
The password must be at least eight characters long and contain one number.
- Open the installation email you received from your PrinterLogic representative or partner.
- Copy the .dat file from the email.
- Open Windows Explorer on your PrinterLogic server.
- Navigate to c:\inetpub\wwwroot.
- Paste the printerinstaller.dat file into the wwwroot folder.
- If you are logged in to the Admin Console, log out and then log back in to ensure that any updates are applied to your installation.
- Open your preferred browser.
- In the Address Bar, enter the following information.
- Press <ENTER> on your keyboard.
- The Admin Console will open in the browser window.
<server name><fully qualified domain name>/admin
The following image shows the login path as it should appear in the browser's Address bar.