Ureader.com  
Microsoft software help and Community
   home   |   control panel login   |   archive   |  
 
Exchange
2000.active.directory
2000.admin
2000.announcements
2000.app.conversion
2000.applications
2000.clients
2000.clustering
2000.connectivity
2000.development
2000.documentation
2000.general
2000.information.store
2000.interop
2000.kms
2000.misc
2000.protocols
2000.realtime.collabo.
2000.setup
2000.transport
2000.win2000
admin
application.conversion
applications
clients
clustering
connectivity
design
development
misc
mobility
setup
tools
  
 
date: Fri, 9 May 2008 16:18:57 -0400,    group: microsoft.public.exchange.admin        back       


E2K7 CAS Certificate   
Getting ready to buy a cert for my E2K7 CAS. The Hub and Mailbox roles are 
on a separate server. My server's internal FQDN is server1.contoso.com. My 
OWA URL is mail.widgets.com. I know my cert needs to have a subject name of 
mail.widgets.com and a Subject Alternative Name of autodiscover.widgets.com, 
but does it also need to have Subject Alternative Names for 
server1.contoso.com and server1 (NetBIOS)? I didn't know if the cert needed 
these for the server-to-server TLS communication.

Thanks.
date: Fri, 9 May 2008 16:18:57 -0400   author:   arm123

Re: E2K7 CAS Certificate   
On Fri, 9 May 2008 16:18:57 -0400, "arm123" 
wrote:

>Getting ready to buy a cert for my E2K7 CAS. The Hub and Mailbox roles are 
>on a separate server. My server's internal FQDN is server1.contoso.com. My 
>OWA URL is mail.widgets.com. I know my cert needs to have a subject name of 
>mail.widgets.com and a Subject Alternative Name of autodiscover.widgets.com, 
>but does it also need to have Subject Alternative Names for 
>server1.contoso.com and server1 (NetBIOS)? I didn't know if the cert needed 
>these for the server-to-server TLS communication.
>

No, not absolutely required. 
Will internal users connect to mail.widgets.com? If so, you are
covered.


>Thanks. 
>
date: Fri, 09 May 2008 18:41:16 -0400   author:   Andy David {MVP}

Re: E2K7 CAS Certificate   
On Fri, 09 May 2008 18:41:16 -0400, Andy David  {MVP}
 wrote:

>On Fri, 9 May 2008 16:18:57 -0400, "arm123" 
>wrote:
>
>>Getting ready to buy a cert for my E2K7 CAS. The Hub and Mailbox roles are 
>>on a separate server. My server's internal FQDN is server1.contoso.com. My 
>>OWA URL is mail.widgets.com. I know my cert needs to have a subject name of 
>>mail.widgets.com and a Subject Alternative Name of autodiscover.widgets.com, 
>>but does it also need to have Subject Alternative Names for 
>>server1.contoso.com and server1 (NetBIOS)? I didn't know if the cert needed 
>>these for the server-to-server TLS communication.
>>
>
>No, not absolutely required. 
>Will internal users connect to mail.widgets.com? If so, you are
>covered.

Oh and be sure to set the internal autodiscovery stuff to the FQDN you
have a certificate for. 

>
>
>>Thanks. 
>>
date: Fri, 09 May 2008 18:47:00 -0400   author:   Andy David {MVP}

Google
 
Web ureader.com


    COPYRIGHT 2007, YARDI TECHNOLOGY LIMITED, ALL RIGHT RESERVE  |   contact us