Remediation Steps
Follow the steps below to remediate this finding on Microsoft IIS webserver.
Replace the self-signed certificate with one issued by a trusted Certificate Authority.
For internal services, deploy a certificate from your internal PKI (Active Directory Certificate Services).
For public-facing services, use a commercial CA or Let's Encrypt.
In IIS Manager, update the HTTPS site binding to use the trusted certificate.