In Configurator, on the Component Server view, for the Application Engine (AE) component, uncheck the HTTP option so only the HTTPS option is checked. However, for this to work correctly, the AE host name must also match the "Issued To" name of the certificate in Configurator on the IIS Server view.
1) The first step in configuring SSL is to obtain an SSL certificate . This can either be a self-signed certificate or a certificate obtained through a trusted certificate authority. Note that self-signed certificates will encrypt the user data but will result in a warning message to end users that the certificate may not be valid.
This problem happens in particular configuration, when SSO Federation Server (SSO Login UI) is accessed through 2-way SSL and happens for any SSO enabled web application when user tries to switch to or open second SSO enabled web apps.
The combination of a redirect to an alias name and using SSL is causing Static Diagnostics to give an error: HTTPS port 443 (IIS): The remote server returned an error: (401) Unauthorized