Solved

Exchange 2010 SSL Certificate Renewal, no Subject Access Names allowed for internal domain names.

Posted on 2014-09-09
2
248 Views
1 Endorsement
Last Modified: 2014-09-09
Hi,

Up until recently GoDaddy have allowed local names in their SAN for SSL certificates. This meant we could have

external-ex01.ourcompany.com/owa

and

internal-ex01.ourcompany.local/owa

on the same certificate. Unfortuantely CA's have now preventing the renewal on SANs that are not FQDN. We have created Self-Signed Exchange 2010 certificates with the local names and rolled them out to our users via GPO. However Outlook 2010 is still looking at the SSL certificate for the external names.

How do we resolve this?
1
Comment
Question by:SimonBrook
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 63

Accepted Solution

by:
Simon Butler (Sembee) earned 500 total points
ID: 40312107
This is a very common problem and easily resolved.
You just need to use the external host name internally via a split DNS system.

http://semb.ee/hostnames2010

Forget about using self signed certificates, waste of time.

Simon.
0
 
LVL 1

Author Closing Comment

by:SimonBrook
ID: 40312116
Thanks for this!
0

Featured Post

Technology Partners: We Want Your Opinion!

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Unified and professional email signatures help maintain a consistent company brand image to the outside world. This article shows how to create an email signature in Exchange Server 2010 using a transport rule and how to overcome native limitations …
When asking a question in a forum or creating documentation, screenshots are vital tools that can convey a lot more information and save you and your reader a lot of time
This video demonstrates how to sync Microsoft Exchange Public Folders with smartphones using CodeTwo Exchange Sync and Exchange ActiveSync. To learn more about CodeTwo Exchange Sync and download the free trial, go to: http://www.codetwo.com/excha…
If you’ve ever visited a web page and noticed a cool font that you really liked the look of, but couldn’t figure out which font it was so that you could use it for your own work, then this video is for you! In this Micro Tutorial, you'll learn yo…

705 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question