Certificate
Hi All,
I'm planning to procure Digital certificate for my E2K7 Servers. Two of the server acts as both CAS and HT and they will be internet facing; configured on NLB.
I want to support webmail, outlook anywhere/autodiscover, Active Sync. I would buy a a UC certifcate with SAN for this.
Does the host name of the CAS/HT servers be part of the SAN? I have a split DNS where the name of cas/ht are CASHT1.blr.contosl.com & CASHT2.blr.contosl.com but the SMTP or external namespace is contoso.com
what all the domains name should i include in the Certificate? should it be just
mail.contoso.com , autodiscover.contoso.com, activesync.contoso.com, webmail.contoso.com
or
mail.contoso.com , autodiscover.contoso.com, activesync.contoso.com, webmail.contoso.com, CASHT1.blr.contosl.com & CASHT2.blr.contosl.comswamy
July 27th, 2010 6:19pm
You need:
webmail.contoso.com autodiscover.contoso.com server1.contoso.com server2.contoso.com
most of the services will use webmail.contoso.com (or mail, or email or whatever you decide to call it)
Mike Crowley
Check out My Blog!
Free Windows Admin Tool Kit Click here and download it now
July 28th, 2010 1:29am
Thanks Mike.
my server names are CASHT1.blr.contosl.com & CASHT2.blr.contosl.com not server1.contoso.com
& server2.contoso.com.
does it mean
mail.contoso.com (outlook anywhere)
webmail.contoso.com (OWA)
Activesync.contoso.com (Active Sync)
autodiscover.contoso.com (autodiscover)
CASHT1.blr.contoso.com
CASHT2.blr.contoso.com
Does the above looks good for the UC SAN certifiacate?
As yo can see the host name in the internal network contains the blr.contoso.com no just contoso.com
swamy
July 28th, 2010 7:03am
Hi swamy,
You just need to include the following domain names:
mail.contoso.com , autodiscover.contoso.com, activesync.contoso.com, webmail.contoso.comPlease remember to click Mark as Answer on the post that helps you, and to click Unmark as Answer if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread. Thanks
Free Windows Admin Tool Kit Click here and download it now
July 28th, 2010 11:15am
Gen, why are you recommending a seperate name for ActiveSync. I've never seen this done. You also differentiate between webmail and mail. This too seems unncessary based on the abovementioned design.
Channavera, let me rephraase:
webmail.contoso.com autodiscover.contoso.com Active Directory FQDN of server 2 Active Directory FQDN of server 2
Mike Crowley
Check out My Blog!
July 29th, 2010 2:48am