Solved

Exchange 2007 - Self.Signed Certificates

Posted on 2014-03-31
3
600 Views
Last Modified: 2014-04-22
I am trying to renew some certificates that expired.  They are self-signed certificates and I get this error message:

WARNING:  This certificate will not be used for external TLS Connections with an FQDN of 'NYABC.cortoso.com' because the CA-signed certificate with the thumbprint '67DE  xxx' takes precedence'.

Can someone explain what this means to me.  Should I proceed or just remove the certificate.EXCH
thanks
0
Comment
Question by:techgenious
  • 2
3 Comments
 
LVL 38

Expert Comment

by:Adam Brown
Comment Utility
You might already have a valid non-self signed certificate set up to run TLS on that server. Run get-exchangecertificate and find the one that has the thumbprint referenced there. Self-Signed certificates aren't generally recommended for use on Exchange servers, since they are only valid to computers that install the certificate as a trusted third party root cert. If you have a valid certificate installed and configured that was issued by a Third Party Root CA, exchange will utilize that instead of self-signed as long as it matches the FQDN set up on your send and receive connectors.
0
 

Accepted Solution

by:
techgenious earned 0 total points
Comment Utility
If you have a valid certificate installed and configured that was issued by a Third Party Root CA, exchange will utilize that instead of self-signed as long as it matches the FQDN set up on your send and receive connectors.  

Can I remove the old one then if the above is true?

Thanks
0
 

Author Closing Comment

by:techgenious
Comment Utility
excellent
0

Featured Post

Threat Intelligence Starter Resources

Integrating threat intelligence can be challenging, and not all companies are ready. These resources can help you build awareness and prepare for defense.

Join & Write a Comment

Follow this checklist to learn more about the 15 things you should never include in an email signature from personal quotes, animated gifs and out-of-date marketing content.
This process describes the steps required to Import and Export data from and to .pst files using Exchange 2010. We can use these steps to export data from a user to a .pst file, import data back to the same or a different user, or even import data t…
In this video we show how to create a Resource Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: Navigate to the Recipients >> Resources tab.: "Recipients" is our default selection …
In this video we show how to create an Address List in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Organization >> Ad…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

7 Experts available now in Live!

Get 1:1 Help Now