Exchange 2007 Self-Signed Certificate
Hi All, I have set up a normal test lab. The scenario is like :
Domain name:testlab.com
Exchange 2007 server name:exsrv (CAS+HTS+MBX rols installed in this server).
I have created a self-signed certificate with cn=webmeail.exsrv.com and SAN name includes:exsrv,exser.testlab.com,autodiscover,autodiscover.testlab.com,webmail.testlab.com and enabled it for IIS/IMAP/POP/SMTP in my exchange server.
I have changed the OWA virtual direcory internal URL to
https://webmail.testlab.com/owa and also changed the other virtual directory internal URL to the same. I also changed the autodiscoverinternalurl to webmail.testlab.com.
When I am trying to acces OWA using
https://webmail.testlab.com/owa from IE internally, it's not letting me to access OWA (this page can not be displayed) but if I choose
https://exsrv.testlab.com/owa, it works fine without certificate error. Once logged in using this URL, if I click the Certificate option from the browser, I can see the message like "webmail.testlab.com
has identified this site as exsrv.testlab.com".
The self signed certificate that I created has no error. I have checked it from the Exchange server certificate MMC and it's all good.
I have checked the the event logs, but no related error was found. My question is as long as the CN holds the name ""webmail.testlab.com"
and it's valid and enabled certificate, why it's not letting me access OWA when I try to access OWA using
https://webmail.testlab.com/owa
Can anyone help me what else I need to check?
Regards,
Imrul
December 29th, 2011 6:27pm
Sorry. there were typo error in the previous message.....the self-signed certificate contains the following
the CN is: webmail.testlab.com
SAN:exsrv,exsrv.testlab.com,autodiscover,autodiscover.testlab.com,webmail.testmail.com
Free Windows Admin Tool Kit Click here and download it now
December 29th, 2011 6:29pm
Hi,
Please verify below steps:
1 Go to EMC server configuration > Client Access > OWA > Properties > Internal URL >
https://webmail.testlab.com/owa
2 Add a DNS record in DNS server: webmail.testlab.com
Try again.Rowen
TechNet Community Support
December 29th, 2011 10:13pm
Hi,
Please verify below steps:
1 Go to EMC server configuration > Client Access > OWA > Properties > Internal URL >
https://webmail.testlab.com/owa
2 Add a DNS record in DNS server: webmail.testlab.com
Try again.Rowen
TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
December 30th, 2011 6:06am
Hi Rown,
Thnaks for your reply. For the OWA virtual directory, the internal URL is set to
https://webmail.testlab.com/owa.
I will create the DNS "A" record for webmail.testlab.com pointing to the CAS server IP. I will let you know how it goes.
Regards,
Imrul
December 30th, 2011 11:59pm
Looking forward to your update.Rowen
TechNet Community Support
Free Windows Admin Tool Kit Click here and download it now
December 31st, 2011 12:31am
be sure yo add the DNS records for autodiscover as well pointing to the IP address for exchange server hosting these CAS servicesNetwork+,Security+,NCSA,MCTS,MCPS,And MCITP
December 31st, 2011 4:11pm
Hi Rowen/ James,
Yes, both of your suggestions worked for me. Created both the "A" records and was able to access the OWA internally
https://webmail.testlab.com/OWA.
Just one question...I did change the internal URL for all the virtual directory (OWA/Webservices/activesync/OAB) to webmail.testlab.com earlier and changed the autodiscoverinteruri to the same.
But only changing the owa virtual directory internal url and creating the "A" records in DNS should be the solution to the issue I was having.
Any comment on the above will be highly appreciated.
Regards,
Imrul
Free Windows Admin Tool Kit Click here and download it now
January 5th, 2012 8:02am