troubleshooting Question

exchange 2010 owa publish through ISA 2004 wildcard cert

Avatar of CaptainGiblets
CaptainGibletsFlag for United Kingdom of Great Britain and Northern Ireland asked on
Microsoft Forefront ISA Server
13 Comments1 Solution762 ViewsLast Modified:
I have a split dns for my domain and added the A record to point to my exchange server.

Internally this works fine, even on my ISA 2004 server. I have forwarded port 443 on my ISA server and I can hit it externally but I am getting the error message "The target principal name is incorrect" and I cant seem to find a way around it.

My publish rule forwards port 443 to which is all resolved. I have flushed the DNS cache using dns tools on the ISA server.

Any ideas what I need to do? this is a wildcard certificate for * and I am trying to access the site using

common name of the certificate is and here is an extract from the logs on isa

Log type: Web Proxy (Reverse)
Status: 0x80090322  
Rule: webmail https
Source: External ( xx.xx.xx.xx:0)
Destination: (
Request: GET 
Filter information:  
Protocol: https
User: domain\username
 Additional information
Client agent: Mozilla/5.0 (compatible; MSIE 10.0; Windows Phone 8.0; Trident/6.0; IEMobile/10.0; ARM; Touch; NOKIA; Lumia 920)
Object source: Internet Processing time: 1
Cache info: 0x8 MIME type:
Keith Alabaster
Enterprise Architect

Our community of experts have been thoroughly vetted for their expertise and industry experience.

Top Expert 2008

The Distinguished Expert awards are presented to the top veteran and rookie experts to earn the most points in the top 50 topics.

Join our community to see this answer!
Unlock 1 Answer and 13 Comments.
Start Free Trial
Learn from the best

Network and collaborate with thousands of CTOs, CISOs, and IT Pros rooting for you and your success.

Andrew Hancock - VMware vExpert
See if this solution works for you by signing up for a 7 day free trial.
Unlock 1 Answer and 13 Comments.
Try for 7 days

”The time we save is the biggest benefit of E-E to our team. What could take multiple guys 2 hours or more each to find is accessed in around 15 minutes on Experts Exchange.

-Mike Kapnisakis, Warner Bros