Solved

Outlook 2007/2010 Keeps asking for Equifax certificate

Posted on 2010-09-06
6
1,286 Views
Last Modified: 2012-05-10
I have installed a UCC certificate into Exchnage 2010. OWA works fine. when I use Outlook Anywhare connecting to my mail with RPC/HTTP, I keep getting a reuest to trust a certifcate and import. When I do the import it says that it was sucessfull, however the next ime I use outlook anywher the same issues happems. See JPG
1.jpg
2.jpg
0
Comment
Question by:PaulMcDonogh1
  • 3
6 Comments
 
LVL 8

Accepted Solution

by:
pvlier earned 500 total points
ID: 33612282
Hi, as you can see on your posted images the certificate is issued to '*.wadns.net'. When outlook connects to your server is uses the 'autodiscover''  feature to collect information about your server. The autodiscover URL is set to 'autodiscover.smms.ac.za'. This name is not on the certificate (*.wadns.net) and therefore you get an error that the certificate is found but the name is not correct.
If this is an UCC certificate then you should be able to add alternative names to the certificate. Add 'autodiscover.smms.ac.za' to your certificate, install this new certificate and the error will go away.
Otherwise here are other options for your situation (scenario 4):
http://technet.microsoft.com/en-us/library/bb332063(EXCHG.80).aspx
0
 

Author Comment

by:PaulMcDonogh1
ID: 33957451
No luck closing
0
 
LVL 8

Expert Comment

by:pvlier
ID: 33959162
Did you understand what I posted? This is a name-on-the-certificate-problem where the name on the certificate doesn't match the domainname that it is installed on. The proof is in the screenshots.
0
 
LVL 8

Expert Comment

by:pvlier
ID: 33973424
Please let me know if the problem still exists. You have multiple options to fix this problem, depending on the server(s) configuration. You need to make sure the correct name exists on the certificate (you can have a certificate with multiple names) or redirect the autodiscover in dns to the correct server so outlook can see it needs to validate another name. Both options can fix the problem. I would go with the first option and purchase a multi-domainname-certificate (called UCC) because that is the most accepted solution for devices like phones, handhelds, etc
0

Featured Post

Active Directory Webinar

We all know we need to protect and secure our privileges, but where to start? Join Experts Exchange and ManageEngine on Tuesday, April 11, 2017 10:00 AM PDT to learn how to track and secure privileged users in Active Directory.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

We've all had that page pop up telling us there is a problem with the certificate and some of us continue on anyways and others run away to a safer competing site.  But what to do when you get the error - is it your problem or theirs?  What can you …
Microservice architecture adoption brings many advantages, but can add intricacy. Selecting the right orchestration tool is most important for business specific needs.
Although Jacob Bernoulli (1654-1705) has been credited as the creator of "Binomial Distribution Table", Gottfried Leibniz (1646-1716) did his dissertation on the subject in 1666; Leibniz you may recall is the co-inventor of "Calculus" and beat Isaac…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question