Exchange Server 2013 SSL Certificates Have Organization and Department Names Mixed Up

If you have used the Exchange Server 2013 certificate request wizard in the Exchange Admin Center to provision an SSL certificate, you may find that the Organization Name (O) and Department Name (OU) are displayed incorrectly on the certificate.


However if the certificate request is created using the New-ExchangeCertificate PowerShell cmdlet the resulting certificate has the values listed correctly.


This is a bug that is expected to be fixed in a future update. In the meantime, for correct CSR generation I recommend using PowerShell.

Thanks to forums member PrestonCole who first brought this to my attention.

About Paul Cunningham

Paul is a Microsoft Exchange Server MVP and publisher of Exchange Server Pro. He also holds several Microsoft certifications including for Exchange Server 2007, 2010 and 2013. Find Paul on Twitter, LinkedIn or Google+, or get in touch for consulting/support engagements.


  1. This is the case with RTM and CU1 (confirmed it myself).

Leave a Comment


We are an Authorized DigiCert™ SSL Partner.