Solved

Which Exchange 2010 certificate is used?

Posted on 2014-02-19
4
415 Views
Last Modified: 2014-02-19
Hello everybody,

i'm using the SBS2011 Exchange with activesync and clientcertificate based authentication. When i installed the server i first made a selfsigned certificate, but later i also made a thawte-signed cert. Now i don't know anymore which certificate is used for the ssl-encryption and presented to an outlook or whatever email client that comes in over active-sync. When i add a new client to the network i need the selfsigned-cert because thats the CA for the clientcertificates, but i dont know if this is the certificate used in the actual communication between server and client.

What information do you need to answer this question?

Kind regards
Philip
0
Comment
Question by:PhilipWestphal
  • 2
  • 2
4 Comments
 
LVL 37

Accepted Solution

by:
Jamie McKillop earned 250 total points
ID: 39871419
Hello,

Run get-exchangecertificate -server <server> | fl

This will tell you which services each cert is enabled for. You can then run:

Enable-ExchangeCertificate -Thumbprint <thumbprint> -Services POP,IMAP,SMTP,IIS

To enable the new cert on any services.

-JJ
0
 

Author Comment

by:PhilipWestphal
ID: 39871538
Hello JJ,

thanks for your answer. There is only one cert which is enabled for the service IIS... am i correct assuming that this is the cert which is used for the communication between the mailclients (i don't use imap or pop in any client, not onside and not for remote-access) and my exchange-server?

Kind regards
Philip
0
 
LVL 37

Expert Comment

by:Jamie McKillop
ID: 39871547
Yes, whichever cert is enabled for IIS (there can be only one enabled at a time) will be used for client communication.

-JJ
0
 

Author Comment

by:PhilipWestphal
ID: 39871611
Thanks a lot.
0

Featured Post

Optimizing Cloud Backup for Low Bandwidth

With cloud storage prices going down a growing number of SMBs start to use it for backup storage. Unfortunately, business data volume rarely fits the average Internet speed. This article provides an overview of main Internet speed challenges and reveals backup best practices.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Disabling the Directory Sync Service Account in Office 365 will stop directory synchronization from working.
Learn to move / copy / export exchange contacts to iPhone without using any software. Also see the issues in configuration of exchange with iPhone to migrate contacts.
In this video we show how to create an email address policy in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Mail Flow…
To show how to create a transport rule in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Mail Flow >> Rules tab.:  To cr…

805 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question