Quantcast
Viewing all articles
Browse latest Browse all 8719

Exchange 2010 Event 12017/12018 Original NOT Self-Signed Certificates

My SBS2011 with Exchange 2010 is issuing event-id 12017-12018 every night about certificates set to expire at the end of this month.

I can see in the Exchange console that I do indeed have 4 certificates that will expire. They all have to do with SMTP,IIS,POP and IMAP.  These certificates were issued by the server  with the server installation and are all labeled SELF SIGNED False.

All instructions I can find so far are for self-signed certificates

I picked the one for SITES to work on since it seems tied to SMTP. I found instructions on finding the thumbprint and using New-ExchangeCertificate. I was able to create a new certificate but the finished product says it is untrusted and must be put into the certificates store.

I found that by using MMC I could add my certificate to the store but it requires a file name and I don't have one.

I have since (I Think) re-connected SMTP to the old certificate because it wouldn't let me remove the invalid certificate until I did and removed my new certificate and should be back where I started.

The SUBJECT on 3 is CN=REMOTE.  The other is CN=Sites.  One of the many things I am wondering is why is there 3 certs for CN=REMOTE.  

This can't be as hard as I am making it!!

Viewing all articles
Browse latest Browse all 8719

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>