Re: Creating a cert for OWA server?



Why is the OWA server bad int he DMZ? It simply chats to the Internal
Exchange? How should it be?


"Andy David {MVP}" <adavid@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:t6cf83hfn287tpum7cdgedild7cpfp4oob@xxxxxxxxxx
On Sun, 01 Jul 2007 09:46:35 -0400, Andy David {MVP}
<adavid@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxx> wrote:

On Sun, 1 Jul 2007 12:03:32 +0100, "Gonzo" <nospam@xxxxxxxxx> wrote:

I have a 2003 OWA server that needs a cert. How can I create a cert for
it
to be https, I do have an internal cert server, but the OWA server is on
a
DMZ. Just don't know where to start?

Anyone else done this before?



In the DMZ, as in not part of the AD domain?

oops. Of course, part of the AD domain. But, still a bad idea.

Not a good idea.
Creating a cert is very easy using the certificate wizard in IIS under
the properties of the default website.
Submit it to a 3rd party certification authority and after they return
it, simply return to the wizard and import it it.

The FQDN of the cert is the name you want people to connect to in DNS.
So, if in DNS, external users connect to https://owa.domain.com, thats
the FQDN you request for the certificate.

I would recommend not using a self-signed certificate for a number of
reasons.




.



Relevant Pages

  • Re: Creating a cert for OWA server?
    ... In the DMZ, as in not part of the AD domain? ... Creating a cert is very easy using the certificate wizard in IIS under ...
    (microsoft.public.exchange.admin)
  • Re: Creating a cert for OWA server?
    ... In the DMZ, as in not part of the AD domain? ... Creating a cert is very easy using the certificate wizard in IIS under ...
    (microsoft.public.exchange.admin)
  • Re: Creating a cert for OWA server?
    ... but you have a domain member in the DMZ. ... publishes OWA from the internal network. ... Creating a cert is very easy using the certificate wizard in IIS under ...
    (microsoft.public.exchange.admin)
  • Re: front-end OWA server
    ... Does your network manager not trust the server that is the OWA server in the ... DMZ subnet? ... What ports are you ... DMZ from the local LAN subnet. ...
    (microsoft.public.exchange.admin)
  • Re: front-end OWA server
    ... Does your network manager not trust the server that is the OWA server in the ... DMZ subnet? ... What ports are you ... DMZ from the local LAN subnet. ...
    (microsoft.public.exchange.misc)