Go Premium for a chance to win a PS4. Enter to Win


Multi Tenant Microsoft cenrtificate

Posted on 2016-10-19
Medium Priority
Last Modified: 2016-11-07

Can you please help me resolve this certificateissue.

Simple environment
OS -- server 2008 R2, Exchange 2010 and one server (i.e.) hub and MB are running on same server.
Have 2 domains
1) abc.com
2) xyz.com
We have setup mail, owa and autodiscover records setup internally (internal IP) and externally (external IP) for both domain (both same to point to same IPs)

SAN SSL is added for both domains. SMTP role assigned to both
Users primary email address will be either username@abc.com or username@xyz.com depending on which company/branch there are from.

When we setup new profiles for the users in abc.com, We are getting an error message saying "the name on the security certificate is invalid or doesn't match the name of the site"
If I check certificate, it is showing autodiscover.xyz.com.
Question by:ukitsme
  • 2
LVL 84

Assisted Solution

by:David Johnson, CD, MVP
David Johnson, CD, MVP earned 1000 total points (awarded by participants)
ID: 41851503
do you have the 2 Cname records
autodiscover.abc.com pointing to mail.xyz.com
autodiscover.xyz.com  pointiong to mail.xyz.com

Certificate mail.xyz.com or *.xyz.com
LVL 28

Accepted Solution

MAS earned 1000 total points (awarded by participants)
ID: 41851533
Your certificate should have these names.
1.mail.abc.com  (common name)
4. mail.xyz.com (This is required only if you common name for each domain).

Please check this article to configure your URLs

If you want to keep only one autodiscover you should redirect autodiscover traffic of xyz.com to autodisocver.abc.com.

Hope it helps
LVL 28

Expert Comment

ID: 41876868
Enough information provided to close the card.

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

High user turnover can cause old/redundant user data to consume valuable space. UserResourceCleanup was developed to address this by automatically deleting user folders when the user account is deleted.
With so many activities to perform, Exchange administrators are always busy in organizations. If everything, including Exchange Servers, Outlook clients, and Office 365 accounts work without any issues, they can sit and relax. But unfortunately, it…
The video tutorial explains the basics of the Exchange server Database Availability groups. The components of this video include: 1. Automatic Failover 2. Failover Clustering 3. Active Manager
Attackers love to prey on accounts that have privileges. Reducing privileged accounts and protecting privileged accounts therefore is paramount. Users, groups, and service accounts need to be protected to help protect the entire Active Directory …

772 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question