E10 EDD Cert pop-up

Hello,
In E10 EDD we are having some staff who get a cert popup (picture below) when they connect to EDD from the E10 Client. Have opened a ticket with Epicor and they forced us to buy a cert (they could not get one working by self signed) which fixed another issue but we still have this popup. Although even with the popup the GoDaddy cert is applied to the site. We can clear the cert popup an but data is incorrect, but if you refresh the site then the data is correct. If I delete the certs causing this popup, the site loads without issues and data is correct on first open, but don’t want to do that to all machines as some certs are required or come back.

image

I have tried to for to ignore client certs on IIS and several other things but have been working on this for a few months off and on without a fix that works (except deleting affected certs).

What are the site settings in IIS?

What specific setting you want?
The EDD site is set to “Ignore Client Certificates”
Require SSL on and off (guessing off should be fine)
“Windows Authentication” is enabled

On default site the Cert is binded to the https type

Can you provide screenshot of your IIS Bindings and EDD deployment settings? This typically causes other issues but does your SSL Domain Name from the EDD setup match your hostname on the bindings? Are you binding to an address or to All Unassigned?

Binding: That is the GoDaddy cert selected in SSL Cert, All Unassigned.
image

Here is the EDD settings, I just added the license file.
SSL Domain name is the same as the FQDN of the cert
App pool is a is domain user

Try removing the * in the IIS binding.

I have done that as well, same issue. I will attempt again now, if I get different results I will let you know.

Is the cert a wildcard cert or a DV?

It is a DV cert.

Confirmed removing * still gives the personal cert popup when going to the site :frowning:

What’s the Authentication settings look like for the EDD site specifically? It looks like the site isn’t setup for Windows Auth. As it’s trying to auth with a cert instead. This is what our IIS auth settings look like for our EDD site.

image

Same thing I have selected. The GoDaddy Cert actually secures the site which is the weird part. What pops up are usually one or two personal certs to select, you can cancel, select one, or close, results are the same
image