Solved

SSL Error Exchange 2010

Posted on 2011-02-14
5
467 Views
Last Modified: 2012-06-27
We recently upgraded from Exchange 2003 to Exchange 2010, My email server is called Exchange, and the external owa is mail.

I have got a certificate from Go Daddy, assigned to work with the external mail.domain.com which works fine, but internal connections to the Exchange server get a SSL error prompt. My question is this, if i were to change all references from mail to exchange, and re issue the certificate will this resolve my problems with the SSL issue, or is there another work around to this without having to change the names.
0
Comment
Question by:Ashvinv82
  • 3
5 Comments
 
LVL 58

Assisted Solution

by:tigermatt
tigermatt earned 250 total points
ID: 34889370

What type of certificate did you obtain? A SAN/UCC certificate (with multiple names) or a single name certificate for mail.company.com?

While the latter will work, it requires lots of configuration changes to work successfully. The Exchange community instead advises that you use a multi-name Unified Communications certificate, which contains the following names:

servername.domain.local
servername
mail.company.com
autodiscover.company.com
autodiscover.domain.local

where servername is the internal NetBIOS name of your Exchange Server, domain.local the DNS name of your internal AD domain and company.com your public domain namespace.

Once you use a certificate with those names, and providing you have not modified your virtual directory configuration away from the standard defaults, you should have no issues internally with SSL certificate prompts.

-Matt
0
 

Author Comment

by:Ashvinv82
ID: 34889397
Ahh ok, im going to get the SSL certificate changed, and will let you know once i have this done.
0
 
LVL 42

Accepted Solution

by:
Amit earned 250 total points
ID: 34889411
0
 

Author Comment

by:Ashvinv82
ID: 34889857
I have now done this, as followed in the guide hopefully this will resolve my issue, will post back tomorrow with my findings.
0
 

Author Comment

by:Ashvinv82
ID: 34895170
Ok all thanks for your help, this has now resolved my error. Thanks once again.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Utilizing an array to gracefully append to a list of EmailAddresses
This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…

920 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now