I have just had a new firewall installed and the config is using port forwarding and reverse proxy as i don't have many public IP addresses.
I have purchased a godaddy wildcard for HTTPS inbound requests and it works fine.
The issue i have is that connecting to exchange now uses the wildcard cert and not the exchange's UCC cert. The installers said 'just install the wildcard on the Exchange server and that's it'.
Having looked at various posts, most state don't use wildcards on Exchange.(Outlook anywhere, autodiscover and activesync issues)
Some others suggest it can be easily remedied by running "Set-OutlookProvider -Identity EXPR -CertPrincipalName msstd:*.domain.com
Should i tell them to sort out another method of forwarding requests and keep my UCC cert on Exchange? Or just access Exchange using HTTP internally?
I'm not fully sure of my options, which i why i paid them to configure their firewall!
Any help appreciated
Or use internally issued certificate between reverse proxy and exchange.