Announcement

Collapse
No announcement yet.

Exchange 2003 OWA Broken after SSL Certificate Renewal

Collapse
X
  • Filter
  • Time
  • Show
Clear All
new posts

  • Exchange 2003 OWA Broken after SSL Certificate Renewal

    Hi,
    Our SSL Certificate is due to expire in a little under a month, I have renewed the Certificate with our provider Go Daddy and the only difference is that they stipulated we have to use 2048 bit key for the CSR request. I created the request using IIS on Windows Server 2008 R2 and the request was accepted by Go Daddy and new certificates were issued.

    I imported the new certificate into the Personal Store of our Exchange Server and replaced the old cert with the new one via IIS.

    As soon as I did this https ceased to function, not even a server error, just nothing, like there is no site there. I tried an iis reset but this didn't resolve the issue.

    I have replaced the original certificate and this resolved the problem.
    I'm running Windows Server 2003 R2 with Exchange 2003 Enterprise.

    Thanks for any input.

    Sean

  • #2
    Re: Exchange 2003 OWA Broken after SSL Certificate Renewal

    Why did you use IIS on Windows 2008 and not IIS on the Exchange server itself?
    It sounds like you may have a corrupt certificate, so will need to get it reissued from a new request.

    Simon.
    --
    Simon Butler
    Exchange MVP

    Blog: http://blog.sembee.co.uk/
    More Exchange Content: http://exchange.sembee.info/
    Exchange Resources List: http://exbpa.com/
    In the UK? Hire me: http://www.sembee.co.uk/

    Sembee is a registered trademark, used here with permission.

    Comment


    • #3
      Re: Exchange 2003 OWA Broken after SSL Certificate Renewal

      Originally posted by Sembee View Post
      Why did you use IIS on Windows 2008 and not IIS on the Exchange server itself?
      It sounds like you may have a corrupt certificate, so will need to get it reissued from a new request.

      Simon.
      the only way I could generate a new csr on that box was to remove the existing certificate, if you renew you don;t get the option to change the bit strength of the RSA key.

      My provider now requires 2048 bit the old key was 1024 bit.

      Comment


      • #4
        Re: Exchange 2003 OWA Broken after SSL Certificate Renewal

        So?
        Just create another web site on the existing server. Then do the certificate request/response in that web site. Once complete, you can switch the other main site to the live certificate by simply running the certificate wizard and choosing to select an existing certificate.

        However I don't think that was the problem - I think it is a corrupt certificate.

        Simon.
        --
        Simon Butler
        Exchange MVP

        Blog: http://blog.sembee.co.uk/
        More Exchange Content: http://exchange.sembee.info/
        Exchange Resources List: http://exbpa.com/
        In the UK? Hire me: http://www.sembee.co.uk/

        Sembee is a registered trademark, used here with permission.

        Comment


        • #5
          Re: Exchange 2003 OWA Broken after SSL Certificate Renewal

          I've rekey'd the certificate this morning and now my exchange server has the option to replace the certificate greyed out ((((

          Comment


          • #6
            Re: Exchange 2003 OWA Broken after SSL Certificate Renewal

            Right got this working by completing the key request on the new site. that's great exported the cert as a pfx file and imported onto our sharepoint box and that's worked fine too.

            Imported onto another box though and when I go tor eplace the existing the cert the new one doesn't appear in the list.

            Any idea's?

            Comment

            Working...
            X