Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Exchange 2010 without UCC certificate

Posted on 2013-06-20
7
Medium Priority
?
360 Views
Last Modified: 2013-12-02
Cutting a long story short, we are looking to migrate an SBS 2003 to SBS 2011 in the coming week.

Everything is set up and we are ready to start migrating mailboxes over. The final thing to do is to get a UCC certificate to cover the various domains. The problem we have is that multiple companies use this mail server and their legal department will not allow to have a certificate that contain all company domain names

There's 3 companies in total so is there anyway i can use individual certificates for each company? and if so how would the autodiscovery work?

This really is a pain as i think it could be a big problem to do thi.

Any advice would be greatly appreciated.
0
Comment
Question by:afflik1923
  • 4
  • 3
7 Comments
 
LVL 63

Accepted Solution

by:
Simon Butler (Sembee) earned 2000 total points
ID: 39262153
SRV records are the answer here.
Get a generic domain name that doesn't belong to any of the three companies, then setup Exchange to use that.

Change Exchange thus: http://semb.ee/hostnames
SRV Records: http://semb.ee/srv

Simon.
0
 

Author Comment

by:afflik1923
ID: 39262239
Thanks Simon,

I've currently got a mail.domain.com certificate on the 2003 server that does belong to the primary company, could i just re-use that? or do i need to make sure the domain does not belong to any of the 3 companies?
0
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39262299
You can use that if you want.
I suggested using another name to avoid any "political" issues if legal don't want the three company names on the same certificate.

Simon.
0
Creating Active Directory Users from a Text File

If your organization has a need to mass-create AD user accounts, watch this video to see how its done without the need for scripting or other unnecessary complexities.

 

Author Comment

by:afflik1923
ID: 39263070
I've done some reading regarding using the SRV records and it certainly does look like the way to go.

I am reliant on another IT company to add these records in, am i able to do these several days in advance? I just want to make sure they are correct but also not "break" the current setup.
0
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39264610
Any clients that are outside the network with Outlook 2007 and higher will attempt to use those records as soon as they are created.
You don't need them until you are going to start moving users on to the server, so it might be a better option to build the server first then get the SRV record request in.

Simon.
0
 

Author Comment

by:afflik1923
ID: 39265196
ok so what if i create the records but the new server is not yet publicly accessible, am i right in thinking it will be ignored?

The server is built and ready to go, we intend to move them over this weekend, but ideally i'd add the records in today so they are ready (i'm relying on a 3rd party for the DNS records)
0
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 39265456
They will not be "ignored" the client will attempt to connect to them and it may cause a startup delay in Outlook. However if you are intending to make the move this weekend I wouldn't worry about it. I would be more concerned about SSL certificates being in place.

If the connection can be made, but the account is still on Exchange 2003 then nothing will happen.

Simon.
0

Featured Post

Concerto Cloud for Software Providers & ISVs

Can Concerto Cloud Services help you focus on evolving your application offerings, while delivering the best cloud experience to your customers? From DevOps to revenue models and customer support, the answer is yes!

Learn how Concerto can help you.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Steps to fix “Unable to mount database. (hr=0x80004005, ec=1108)”.
Stellar Exchange Toolkit: this 5 in 1 toolkit comes loaded with mega-software tool. Here’s an introduction to tools’ usage and advantages:
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
how to add IIS SMTP to handle application/Scanner relays into office 365.
Suggested Courses

783 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question