Solved

How can I get a certificate for my .local domain.

Posted on 2015-02-24
2
139 Views
Last Modified: 2015-04-23
I have recently migrated my exchange 2003 server to exchange 2010. It is still running on a .local domain with external email going to a .org domain. I purchased an SSL certificate for the .org domain and external email works with no issues. I am still getting certificate mismatch errors for internal outlook clients. I understand I am not able to purchase an SSL certificate for a .local domain. Is there a way to disable SSL for internal email or turn this feature off. I really don't need it for internal email to Outlook clients. I would prefer not to have to rename the domain since that may create other issues.

Thanks in advance for your help.
0
Comment
Question by:P Hurdle
2 Comments
 
LVL 34

Assisted Solution

by:Seth Simmons
Seth Simmons earned 250 total points
ID: 40629159
you need to configure your internal URLs to be the .org domain and not .local; you won't be able to get .local certificates in a few months anymore anyway
also, setup split dns

Configure Exchange Services for the Autodiscover Service
https://technet.microsoft.com/en-us/library/bb201695%28v=exchg.141%29.aspx?f=255&MSPPError=-2147217396

Windows - Setting Up Split DNS
http://www.petenetlive.com/KB/Article/0000830.htm
0
 
LVL 63

Accepted Solution

by:
Simon Butler (Sembee) earned 250 total points
ID: 40629418
You cannot get certificates with .local on them that expire after November 2015, so unless someone is selling certificates that have a six month life, then you cannot get one.

SSL isn't really optional for Exchange, you cannot turn it on or off within Exchange. Therefore a split DNS system and modify all of the internal URLs to the external host name is the best option.
http://semb.ee/hostnames2010

Simon.
0

Featured Post

Independent Software Vendors: We Want Your Opinion

We value your feedback.

Take our survey and automatically be enter to win anyone of the following:
Yeti Cooler, Amazon eGift Card, and Movie eGift Card!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Active Sync push Notifications do not push in a timely manner 8 31
IMAP storage issue 6 63
Purge \Deleted Items? 2 27
exchange 2007 1 8
This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
MS Outlook is a world-class email client application that is mainly used for e-communication globally.  In this article, we will discuss the basic idea about MS Outlook, its advanced features, and types of MS Outlook File formats.
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
This video shows how to quickly and easily add an email signature for all users on Exchange 2016. The resulting signature is applied on a server level by Exchange Online. The email signature template has been downloaded from: www.mail-signatures…

680 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question