Hello All
I have the following SSL cert configuration in my Exchange 2007/ISA
2006 environment and everything *appears* to be working as it should.
CAS Server:
I removed the default self signed cert and replaced it with an
internal CA cert. The cert is just a standard cert not a unified
communications cert. Thinking about this after I did it I'm not sure
why I could not just have imported the self signed cert into ISA.
ISA Server
I imported the CAS server cert into my ISA servers trusted root
certificate store so the ISA server would trust my internal root CA
when it performed SSL bridging.
I imported a commercial CA certficate (GoDaddy) into my ISA server and
applied it to my external web listener. The cert was for
mail.domain.com and again nothing special just your standard SSL cert
I imported another commerical CA certificate (GoDaddy) into my ISA
server and applied this to a new web listener for
autodiscover.domain.com. This was to support the Autodiscover service
Now, I've been reading some information lately which indicates that I
should have issues with this setup and that I need a special
certificate for my CAS server which contains multiple subject
alternate names. Is this correct and can someone give me a clear
explanation as to why and also to why the setup I have should not work
becuase it appears to work fine. I am running Outlook 2007 clients/
windows mobile 5.0 and also Outlook Anywhere.
Thanks to you all
AJ