Issue with new install of third-party CERT  - and trying to enable services- Warning!!
Hi - I have imported a our new certificate and would like to enable it for "SMTP, IMAP, IIS, POP" When I go to enable I get a big WARNING that I will not be able to use my TLS connectors?? [PS] C:\Documents and Settings\oscar.meyer> Enable-ExchangeCertificate -ThumbPrint [XXXXX-THUMBPRINT-XXXXXX] -Services "SMTP, IMAP, POP, IIS" WARNING: This certificate will not be used for external TLS connections with an FQDN of 'mail1.mymail.com.COM' because the self-signed certificate with thumbprint 'AAA-THUMBPRINT-AAAAAAA' takes precedence. The following connectors match that FQDN: Default MAIL1, Client MAIL1. Confirm Overwrite existing default SMTP certificate, 'AAA-THUMBPRINT-AAAAAAA' (expires 1/01/2XXX 2:23:15 PM), with certificate 'XXXXX-THUMBPRINT-XXXXXX' (expires 2/XX/2XXX 12:34:13 PM)? [Y] Yes [A] Yes to All [N] No [L] No to All [S] Suspend [?] Help (default is "Y"): I did not complete the command - the whole purpose of the CERT is for our TLS connectors to external clients - Do I just have to re-create my connectors once I have enabled the CERT? Please advise. Thanks. -John
February 18th, 2009 4:31am

Exchange 2007 generates self-signed certificates during installation of server roles.You should overwrite the self-signed certificate when installing a valid third-party certificate. RjZ
Free Windows Admin Tool Kit Click here and download it now
February 18th, 2009 4:37am

Hi John, Please understand the Subject or Subject Alternate Name fields of your new certificate should contain FQDN of receive connector. If not, please reapply a certificate which meets the requirement. Related article for your reference: Selection of Inbound Anonymous TLS Certificates http://technet.microsoft.com/en-us/library/bb430790.aspx Thanks, Elvis
February 20th, 2009 3:20pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics