?
Solved

Additional Exchange 2010 Server - New Site - Certificate Errors

Posted on 2014-01-07
6
Medium Priority
?
286 Views
Last Modified: 2014-01-18
We upgraded Exchange 2010 SP2 from Exchange 2003 in 2012 and all has/is working as expected

I installed a new Exchange 2010 Enterprise server in a 2nd site with Mail, HUB, CAS roles
Now users in this site are getting Security Alert(s):
"The security certificate was issued by a company you have not chosen to trust. View the
certificate to determine whether you want to trust the certifying authority."

I took the defaults while installing the new server and no configuration has been done
0
Comment
Question by:Paul W
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 37

Expert Comment

by:Mahesh
ID: 39762717
You need to create SAN certificate request from Exchange server (CAS) for owa, autodiscover, and legacy url for exchange 2003 if migration is still running and need to get certificate from 3rd party CA.
Also you can \ should use same hostnames for internal and external Exchange URLs so that only single certificate can be used internally and externally
You need to use split DNS so that urls can be resolved from internet through public IP and from intranet through private IP

http://www.msexchange.org/articles-tutorials/exchange-server-2010/management-administration/managing-certificates-exchange-server-2010-part1.html
http://technet.microsoft.com/en-us/library/dd351057(v=exchg.141).aspx

Mahesh
0
 
LVL 12

Expert Comment

by:Md. Mojahid
ID: 39764579
If you have already configure and buy certificate then you should check it out proper domain name and DNS.
0
 

Author Comment

by:Paul W
ID: 39765175
We've been using a 3rd party certificate for over a year - when we added a new server in an existing site is when the users are getting the errors

I inported the existing certificate into the new server - the new server has the CAS, HUB, Mailbox role installed

No mailboxes have been moved/created on the new server - it is the users at the site connecting to the CAS receiving the error
0
Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

 
LVL 37

Expert Comment

by:Mahesh
ID: 39765245
Have you assigned Exchange services to this certificate on new server ?

Mahesh
0
 

Accepted Solution

by:
Paul W earned 0 total points
ID: 39776629
This can be closed, I assigned the IIS service to the existing certificate
0
 

Author Closing Comment

by:Paul W
ID: 39790449
I researched/tested on my own - compared differences with original server
0

Featured Post

Hire Technology Freelancers with Gigs

Work with freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely, and get projects done right.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article describes how to import an Outlook PST file to Office 365 using a third party product to avoid Microsoft's Azure command line tool, saving you time.
This article outlines some of the reasons why an email message gets flagged as spam on a recipient's end.
In this Micro Video tutorial you will learn the basics about Database Availability Groups and How to configure one using a live Exchange Server Environment. The video tutorial explains the basics of the Exchange server Database Availability grou…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…
Suggested Courses

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question