• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 74
  • Last Modified:

Multi Tenant Microsoft cenrtificate


Can you please help me resolve this certificateissue.

Simple environment
OS -- server 2008 R2, Exchange 2010 and one server (i.e.) hub and MB are running on same server.
Have 2 domains
1) abc.com
2) xyz.com
We have setup mail, owa and autodiscover records setup internally (internal IP) and externally (external IP) for both domain (both same to point to same IPs)

SAN SSL is added for both domains. SMTP role assigned to both
Users primary email address will be either username@abc.com or username@xyz.com depending on which company/branch there are from.

When we setup new profiles for the users in abc.com, We are getting an error message saying "the name on the security certificate is invalid or doesn't match the name of the site"
If I check certificate, it is showing autodiscover.xyz.com.
  • 2
2 Solutions
David Johnson, CD, MVPOwnerCommented:
do you have the 2 Cname records
autodiscover.abc.com pointing to mail.xyz.com
autodiscover.xyz.com  pointiong to mail.xyz.com

Certificate mail.xyz.com or *.xyz.com
MAS EE MVETechnical Department HeadCommented:
Your certificate should have these names.
1.mail.abc.com  (common name)
4. mail.xyz.com (This is required only if you common name for each domain).

Please check this article to configure your URLs

If you want to keep only one autodiscover you should redirect autodiscover traffic of xyz.com to autodisocver.abc.com.

Hope it helps
MAS EE MVETechnical Department HeadCommented:
Enough information provided to close the card.

Featured Post

Free tool for managing users' photos in Office 365

Easily upload multiple users’ photos to Office 365. Manage them with an intuitive GUI and use handy built-in cropping and resizing options. Link photos with users based on Azure AD attributes. Free tool!

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now