Use Windows 2003 CA to create a web server certificate with alternative DNS names



Simple issue, based on exchange server. Exchange requires usage of SSL. It uses a self signed certificate, which we do not really like.

Users access the exchange system using a short name in the browser, when they access OWA: https://exchange/.

Outlooks uses - thanks to automatic confuiguration - the FULL name (https://exchange.company.local/).

Now, this is seriously crap. The IIS manager can request a new certificate, but the wizard does not allow me to enter multiple alternative DNS names.

CertServ web signup does allow me to do so, but it does not hook the certificate automatically to the web server, and stores it in the user account. I can not export the certificate (exportable key is blocked out) and I can not register it at all in IIS.

Result: crap. Does not work.

How the heck can I get a backup-capable web server certificate with multiple alternative DNS names from a windows 2003 server certificate authority in such a way that I can acutally please get it into an IIS website?

Thanks.

.



Relevant Pages

  • Re: how to configure rpc over http connection for a client
    ... This is a server for my client. ... When i work at my office, outlook can connect to the exchange server. ... Yep - this is where you accept & then install the certificate after you get ...
    (microsoft.public.windows.server.sbs)
  • Re: Dead Exchange Server
    ... Microsoft Certified Partner ... Server, and matched up every setting on my default, then deleted the new one, ... I would suggest downloading Exchange Best Practice and SBS Best Practice ... > certificate that was generated with the install, but i made a new one> to ...
    (microsoft.public.exchange.connectivity)
  • Re: EXCHANGE: Outlook 2007 Cannot collect Exchange Mail
    ... If you are setting up a "Microsoft Exchange" ... This CA Root certificate is not trusted because it is not in the ... Do not change Web server certificate is ... (dynDNS.org shows following for CustomDNS settings .....) ...
    (microsoft.public.windows.server.sbs)
  • RPC over HTTP, Microsoft solution
    ... Exchange Server 2003 RPC over HTTP Deployment Scenarios ... Place a check in the box next to 'Certificate Services' and click 'Yes' ...
    (microsoft.public.exchange.setup)
  • Re: OWA 2003 w/ Smart Card Authentication.
    ... Exchange 2003 server via ActivSync. ... the IIS certificate. ... Whether or not authentication will succeed is completely dictated by ... Server's SSL certificate must be configured on root of v-server via ...
    (microsoft.public.exchange.connectivity)