<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Configure an SSL Certificate for Exchange Server 2010</title>
	<atom:link href="http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010/feed" rel="self" type="application/rss+xml" />
	<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010</link>
	<description>Microsoft Exchange Server News - Tips - Tutorials</description>
	<lastBuildDate>Fri, 10 Feb 2012 02:36:56 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
<xhtml:meta xmlns:xhtml="http://www.w3.org/1999/xhtml" name="robots" content="noindex" />
	<item>
		<title>By: dan</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6598</link>
		<dc:creator>dan</dc:creator>
		<pubDate>Mon, 06 Feb 2012 10:03:35 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6598</guid>
		<description>I uninstalled and reinstalled the certificate on the 2nd server and everything looks fine now. I am able to access OWA without any issues.

Thanks Paul</description>
		<content:encoded><![CDATA[<p>I uninstalled and reinstalled the certificate on the 2nd server and everything looks fine now. I am able to access OWA without any issues.</p>
<p>Thanks Paul</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul Cunningham</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6588</link>
		<dc:creator>Paul Cunningham</dc:creator>
		<pubDate>Sun, 05 Feb 2012 22:35:18 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6588</guid>
		<description>Yes you can use a mix of certificates issued by private and public CAs.

Use the privately issued certs on your internal servers, including the external name on the internet-facing CA servers as well.

Then request a separate cert from the public CA for the external name(s) and bind that cert to your ISA Server listener.</description>
		<content:encoded><![CDATA[<p>Yes you can use a mix of certificates issued by private and public CAs.</p>
<p>Use the privately issued certs on your internal servers, including the external name on the internet-facing CA servers as well.</p>
<p>Then request a separate cert from the public CA for the external name(s) and bind that cert to your ISA Server listener.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John McGraw</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6587</link>
		<dc:creator>John McGraw</dc:creator>
		<pubDate>Sun, 05 Feb 2012 22:30:18 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6587</guid>
		<description>Paul - 

Are there any comments you can provide on my situation? Greatly appreciated.

Thanks.

John</description>
		<content:encoded><![CDATA[<p>Paul &#8211; </p>
<p>Are there any comments you can provide on my situation? Greatly appreciated.</p>
<p>Thanks.</p>
<p>John</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul Cunningham</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6586</link>
		<dc:creator>Paul Cunningham</dc:creator>
		<pubDate>Sun, 05 Feb 2012 22:19:21 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6586</guid>
		<description>I&#039;d just unassign the certificate that you don&#039;t want to use from SMTP.</description>
		<content:encoded><![CDATA[<p>I&#8217;d just unassign the certificate that you don&#8217;t want to use from SMTP.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Paul Cunningham</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6585</link>
		<dc:creator>Paul Cunningham</dc:creator>
		<pubDate>Sun, 05 Feb 2012 21:56:47 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6585</guid>
		<description>Is your browser blocking popups?</description>
		<content:encoded><![CDATA[<p>Is your browser blocking popups?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dan</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6581</link>
		<dc:creator>dan</dc:creator>
		<pubDate>Sun, 05 Feb 2012 19:10:42 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6581</guid>
		<description>In OWA 2010 after logging when I click on the New Button or any other buttons nothing happens. Unable to create reply or delete any messages. However, if I access OWA directly from server everything works fine.
Any idea what it fails in OWA?

Thanks in Advance 

Dan</description>
		<content:encoded><![CDATA[<p>In OWA 2010 after logging when I click on the New Button or any other buttons nothing happens. Unable to create reply or delete any messages. However, if I access OWA directly from server everything works fine.<br />
Any idea what it fails in OWA?</p>
<p>Thanks in Advance </p>
<p>Dan</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dan</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6580</link>
		<dc:creator>dan</dc:creator>
		<pubDate>Sun, 05 Feb 2012 19:05:19 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6580</guid>
		<description>Hi Paul,

Recently I installed a SAN certificate on my exchange server. On 1st eveything went fine, but on second server when I enabled the exchange certificate it gave me the below error

This certificate will not be used for external TLS connections with an FQDN of &#039;mail1.X.X.COM&#039; because the self-signed certificate with thumbprint &#039;AAA-THUMBPRINT-AAAAAAA&#039; takes precedence. 

Now on second server I see a red mark on the certificate

I have all the names external and internal on the SA certificate.

Please could you let me know if this would create any problems on my exchange servers</description>
		<content:encoded><![CDATA[<p>Hi Paul,</p>
<p>Recently I installed a SAN certificate on my exchange server. On 1st eveything went fine, but on second server when I enabled the exchange certificate it gave me the below error</p>
<p>This certificate will not be used for external TLS connections with an FQDN of &#8216;mail1.X.X.COM&#8217; because the self-signed certificate with thumbprint &#8216;AAA-THUMBPRINT-AAAAAAA&#8217; takes precedence. </p>
<p>Now on second server I see a red mark on the certificate</p>
<p>I have all the names external and internal on the SA certificate.</p>
<p>Please could you let me know if this would create any problems on my exchange servers</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: safwan</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6494</link>
		<dc:creator>safwan</dc:creator>
		<pubDate>Sun, 29 Jan 2012 11:23:29 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6494</guid>
		<description>Dear

I am create two dertificate in CAS and i need to remove please can help me to provide the step...</description>
		<content:encoded><![CDATA[<p>Dear</p>
<p>I am create two dertificate in CAS and i need to remove please can help me to provide the step&#8230;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joman</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6091</link>
		<dc:creator>Joman</dc:creator>
		<pubDate>Wed, 04 Jan 2012 15:12:22 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6091</guid>
		<description>why email are being queued on exchange server 2003 sending to exchange 2010?</description>
		<content:encoded><![CDATA[<p>why email are being queued on exchange server 2003 sending to exchange 2010?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: John</title>
		<link>http://exchangeserverpro.com/configure-an-ssl-certificate-for-exchange-server-2010#comment-6055</link>
		<dc:creator>John</dc:creator>
		<pubDate>Fri, 23 Dec 2011 16:23:42 +0000</pubDate>
		<guid isPermaLink="false">http://exchangeserverpro.com/?p=1353#comment-6055</guid>
		<description>Paul - 

I have a strange predicament, I have inherited a domain with an internal name ending with .gov. External name is slightly different due to restrictions. Want to create a SAN with internal and external domain names as required, but cert authority informs I need to register my internal name as it is an external designation. Problem is the governing board for .gov names will not allow us to register it as it is not the format they allow - even thought it is for our internal use. Our AD is 2008R2 but too large for a domain rename (the thought makes me shutter) besides I think Exchange is one of the apps that is not compatible with it. My question is - can I have two cetificates assigned to my CAS array, The Commercial SSL for external users and an internal self signed certificate for my internal clients? Will Outlook autoconnect work properly?

Thanks in advance.

John</description>
		<content:encoded><![CDATA[<p>Paul &#8211; </p>
<p>I have a strange predicament, I have inherited a domain with an internal name ending with .gov. External name is slightly different due to restrictions. Want to create a SAN with internal and external domain names as required, but cert authority informs I need to register my internal name as it is an external designation. Problem is the governing board for .gov names will not allow us to register it as it is not the format they allow &#8211; even thought it is for our internal use. Our AD is 2008R2 but too large for a domain rename (the thought makes me shutter) besides I think Exchange is one of the apps that is not compatible with it. My question is &#8211; can I have two cetificates assigned to my CAS array, The Commercial SSL for external users and an internal self signed certificate for my internal clients? Will Outlook autoconnect work properly?</p>
<p>Thanks in advance.</p>
<p>John</p>
]]></content:encoded>
	</item>
</channel>
</rss>

