Installing an SSL Certificate in Microsoft Exchange Server 2010
Not what you're looking for?
We want your feedback!
Topic: Installing SSL Certificates
After your certificate request is approved, download both the issued and intermediate certificates in your account. You must install both files in Microsoft Exchange Server 2010, starting with the intermediate. See Downloading an SSL Certificate for more information.
Exchange Server 2010 requires a Multiple Domain (UCC) Certificate to run all services securely.
To Install An SSL Certificate in Microsoft Exchange 2010
- From the Start menu, click Run..
- Type mmc, and then click OK. The Microsoft Management Console (Console) window opens.
- In the Console window, click the File menu and select Add/Remove Snap-in. The Add or Remove Snap-ins window displays.
- Select Certificates, and then click Add.
- Select Computer Account, and then click Next.
- Select Local Computer, and then click Finish.
- Click OK.
- In the Console window, expand the Certificates folder on the left.
- Right-click Intermediate Certification Authorities, mouse-over All Tasks, then click Import.
- In the Certificate Import Wizard, click Next.
- Click Browse to find the intermediate certificate file.
- Change the file extension filter to PKCS #7 Certificates (*.spc;*.p7b), select the *_iis_intermediates.p7b file, and then click Open.
- Click Next.
- Select Place all certificates in the following store.
- Click Browse, select Intermediate Certification Authorities, and then click Next.
- Click Finish.
- Close the Console window.
- From the Start menu, go to Programs, Microsoft Exchange 2010, and click Exchange Management Console.
- Click Manage Databases.
- Click Server Configuration.
- In Exchange Certificates, select your certificate.
- From the Actions panel on the right, click Complete Pending Request.
- Click Browse to locate the certificate file. The file extension might be .txt or .crt instead of .cer (search for all files).
- Click Open.
- Click Complete.
If you receive the error, "The source data is corrupted or not properly Base64 encoded," check the Self Signed field. If it is True, refresh console by pressing F5 on your keyboard. If it still displays True, create a new CSR and then re-key your certificate.
- Click Finish.
- From the Actions menu, click Assign Services to Certificate.
- Select servers, then click Next.
- Select services you want to assign to the certificate, then click Next.
- Click Assign.
- Click Finish.
Do you still need additional Help? Create a Support ticket.
Did this article not answer your question?
Post your question in the forum.
Have a question about the content of this article?
Submitting Topic...
0 min expected wait time