Link to home
Start Free TrialLog in
Avatar of Ben Hart
Ben HartFlag for United States of America

asked on

Exchange 2010 new cert problem

I have two Exch2010SP3 servers, one in each of two AD sites.  Layout below:

SiteA-------------------------------Internet
    EXCH1
|
|
|
SiteB
    EXCH2

In preparation for a migration to Office365, I bought a 3rd party cert for EXCH2 to allow external access for mailbox migrations.  I assume that I'll need to redirect OWA/ECP to this new cert's URL.  We currently have the one OWA cert to SiteA/EXCH1 that proxies for SiteB/EXCH2.  
In order to change this proxy and allow external OWA access to EXCH2 I will need to do the following:

Change ExternalURI values for OWA and ECP on EXCH2
Bind the new cert to https on EXCH2

I know there's at least two other steps but I'm drawing blanks..
What am I missing?
Avatar of Simon Butler (Sembee)
Simon Butler (Sembee)
Flag of United Kingdom of Great Britain and Northern Ireland image

It is the presence of the external URL that tells Exchange whether to proxy or redirect.
Therefore if you configure an external URL then restart IIS, you shouldn't need to do anything else on Exchange. Open port 443 and ensure the second host name resolves to the Exchange server and Exchange will do the rest.

Simon.
Avatar of Ben Hart

ASKER

Thanks Simon.  Will I also need to change the type of Redirection?  From Manual to Silent?
ASKER CERTIFIED SOLUTION
Avatar of Simon Butler (Sembee)
Simon Butler (Sembee)
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I coulda swore the redirect was silent back when we first set these servers up *cough* 4 years ago *cough*.  But it was set to Manual.  Change to Silent and tested yesterday and today.  Redirect worked and every internal/externalurl is now the new url.  I did resetiis on both servers just in case...

I now have a mailtip issue but that might be a different topic posting. Thanks Simon.
Sorry it took so bloody long Simon.