Re: OWA Security Alert Prompt Question
From: Ben Winzenz [Exchange MVP] (benwinzenz_at_NOSPAM.gardnerwhite.com)
Date: 02/23/04
- Next message: Ben Winzenz [Exchange MVP]: "Re: Outlook using HTTP/RPC to Exchange"
- Previous message: Ben Winzenz [Exchange MVP]: "Re: Restoring priv1.edb from windows backup?"
- In reply to: Tim Adams: "Re: OWA Security Alert Prompt Question"
- Next in thread: Piotr Trochimiuk: "Re: OWA Security Alert Prompt Question"
- Messages sorted by: [ date ] [ thread ]
Date: Mon, 23 Feb 2004 13:51:14 -0500
Yes - ALL clients need to install the cert and place it in the Trusted Root
Certification Authority cert store. This is the only way to get rid of that
message about the untrusted company. That, or break down and spend the
~$200 for a commercial cert from Thawte.
-- Ben Winzenz MVP - Exchange Network Engineer Gardner & White http://www.techtidbits.net Exchange FAQ's: http://www.swinc.com/resource/exch_faq.htm Exchange 2000 FAQ's: http://www.swinc.com/resource/e2kfaq.htm "Tim Adams" <tim_4h@hotmail.com> wrote in message news:d5140f12.0402230936.2d587a54@posting.google.com... > Thanks for the reply..here's some more info: > It's my own CA. It is listed under the 'Trusted Root Cert > Authorities' on the server. Do you mean all the clients need to > install the certificate?? > > The subject of the SSL DOES match the FQDN of the Exchange Server > (only one server, not a front end/back end) > > The security alert I am referring to has the following warnings: > - The certificate was issued by a company you have not chosen to trust > - The name of the security certificate is invalid or does not match > the name of the site. > > Thanks Again! > > > "Piotr Trochimiuk" <ptr@nospamplease_vulcan.pl> wrote in message news:<emwcKSf#DHA.1392@tk2msftngp13.phx.gbl>... > > Your clients must first trust your root CA. > > Where did you get SSL certificate from? Did you buy it for example from > > Verisign? Or maybe used your own CA? If it's own CA, all of your clients > > should add your root's CA certificate to trusted roots. > > Check also: > > Is your certificate valid? > > Does the subject of SSL certificate match FQDN of your Exchange server? > > > > Or at least give us more info, what exactly says 'Security Alert'? > > -- > > Piotr Trochimiuk > > MCSE, MCSA:Messaging > > > > > > Użytkownik "Tim Adams" <tim_4h@hotmail.com> napisał w wiadomości > > news:d5140f12.0402222130.7cf8db94@posting.google.com... > > > I recently implemeted Forms Based Authenication in Exchange 2003. > > > Being new to SSL, I would like to stop the 'Security Alert' banner > > > from appearing when clients log into their webmail. I've known people > > > from other companies who get their email via SSL OWA, without the > > > prompt. Does anyone have any ideas on how to disable this?? > > > > > > Thanks in Advance....Tim
- Next message: Ben Winzenz [Exchange MVP]: "Re: Outlook using HTTP/RPC to Exchange"
- Previous message: Ben Winzenz [Exchange MVP]: "Re: Restoring priv1.edb from windows backup?"
- In reply to: Tim Adams: "Re: OWA Security Alert Prompt Question"
- Next in thread: Piotr Trochimiuk: "Re: OWA Security Alert Prompt Question"
- Messages sorted by: [ date ] [ thread ]
Relevant Pages
|