Forum Discussion

Muhammad_Irfan1's avatar
Apr 23, 2015

CA cert on client side and self signed on server side for microsoft exchange

Tomorrow i am gonna buy CA certificate for client side profile. I am using F5 for Microsoft exchange servers. Need you final thoughts about it.

 

I will only buy one certificate and apply it on client side profile. I will use self signed certificate on exchange server. Will it have any problem in using exchange server if CA cert is used in client and self signed in server side?

 

Which site would be a better one which is affordable around 100$ and provide cert quick.

 

Thanks

 

5 Replies

  • I will only buy one certificate and apply it on client side profile. I will use self signed certificate on exchange server. Will it have any problem in using exchange server if CA cert is used in client and self signed in server side?

     

    i understand there is no issue. actually, if you want, you can also use the same certificate on your exchange server.

     

    • Nitass thanks for answer. As there are two exchange servers, so do i have to buy SAN certificate which includes exchange servers host names in SAN area? or simple certificate is enough which have CN of LB.
  • I will only buy one certificate and apply it on client side profile. I will use self signed certificate on exchange server. Will it have any problem in using exchange server if CA cert is used in client and self signed in server side?

     

    i understand there is no issue. actually, if you want, you can also use the same certificate on your exchange server.

     

    • Muhammad_Irfan1's avatar
      Muhammad_Irfan1
      Icon for Cirrus rankCirrus
      Nitass thanks for answer. As there are two exchange servers, so do i have to buy SAN certificate which includes exchange servers host names in SAN area? or simple certificate is enough which have CN of LB.
  • As there are two exchange servers, so do i have to buy SAN certificate which includes exchange servers host names in SAN area? or simple certificate is enough which have CN of LB.

     

    i am not exchange expert but i understand only user-facing fqdn (fqdn of lb) is enough.