Link to home
Start Free TrialLog in
Avatar of bhieb
bhieb

asked on

Outlook Security Alert on open

On a new Exchange install.  I had a 3rd party cert for owa (iis service). I accidentally put SMTP on it. That caused security warnings in outlook as the cert has a different site (our internal domain is mydomain.loc external mydomain.com).

Since you cannot remove a service from a cert, I put them all back on to the self signed one. Removed the 3rd party one, re imported 3rd party one, added just the iis service to that.

However the outlook clients are still complaining about the cert. Why? Is there some service i need to restart to apply this, maybe client access or hub transport? As far as I know internal outlook clients could care less about the iis cert.
ASKER CERTIFIED SOLUTION
Avatar of Adam Farage
Adam Farage
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of bhieb
bhieb

ASKER

Ok now it is coming backup been a long time since I've set one up. The DNS is already setup so the external owa.mydomain.com resolves back to mail.mydomain.loc IP.

I had a few things wrong.  First all the CA services were pointing to the internal url https://mail.mydomain.loc  (for OWA, OAB, ECP, Active sync...). I've change them to use the external that matches the cert. https://owa.mydomain.com

Get-WebServicesVirtualDirectory returned similar problems interal was still .loc external .com so i changed internal to .com.

Now when I run outlook autodiscover test, all I see referencing the internal name is te RPC server name itself. How do I get that changed, or do I?
Avatar of bhieb

ASKER

Disregard the last, I had a typo in your command to reset the auto discover url. Error is gone now, all is well.