Please fill out the fields below so we can help you better. Note: you must provide your domain name to get help. Domain names for issued certificates are all made public in Certificate Transparency logs (e.g. https://crt.sh/?q=example.com), so withholding your domain name here does not increase secrecy, but only makes it harder for us to provide help.
The operating system my web server runs on is (include version):Windows server r12
My hosting provider, if applicable, is:
I can login to a root shell on my machine (yes or no, or I don’t know):yes
I’m using a control panel to manage my site (no, or provide the name and version of the control panel):no
The version of my client is (e.g. output of certbot --version or certbot-auto --version if you’re using Certbot):
The certificate for the above domain shows another domain ion the same server. Not sure how this happened, but I need to remove this link and generate it’s own certificate.
CN=www.dwcpcommunity.org.uk
15.04.2019
14.07.2019
expires in 68 days www.dwcpcommunity.org.uk - 1 entry
So both connections are insecure.
How did you create that certificate?
Open your IIS-Managementconsole, then check your bindings.
Perhaps share a screenshot.
IIS8 supports SNI, so you can create different websites with different certificates. And one website with different bindings, different domain names and different certificates.
I created the certificates running the C:\LetsEncrypt\letsencrypt.exe command. I think I created the dwcp certificate then the jdcounselling site one after another.
I use one productive website with a lot of different bindings, different certificates and different domain names (own and customer-domains). Plus test-websites.
I tried removing the certificate and adding a new one, but it ends up exactly the same. Maybe I have to remove the certificates for both domains and re generating them.
You have two websites, I have one website with a lot of different host names, a wildcard (*.server-daten.de without a host name (that's the standard port 443) and a lot of different domain names (own productive domains, domains of customers).
Wait: Somewhere I've read it is possible to remove the SNI-support in Windows 2012. Perhaps you have disabled SNI-support.
Then all https connections would use the same certificate. But you must search to find that.
I have changed them, but it makes no difference. Maybe I need to remove all certificates and re add them.
I cannot see how one domain picks up another’s certificate via the LetsEncrypt script.