UCPrimer
  • UCprimer
  • About

Working with GoDaddy SSL Certificates

7/29/2013

0 Comments

 
Picture
This article walks through the process of buying and setting up GoDaddy's SSL certificates for use on either your Lync Edge server or your Reverse Proxy. In this article, I am using a SSL cert for my Exchange virtual directories that will be published using the reverse proxy Forefront TMG 2010. This is also the same reverse proxy being used to publish the Lync web services. Although there are many types of SSL certs available, for Lync or Exchange environments, the "Multiple Domains UCC" SSL cert from GoDaddy can be purchaesd and used as shown below:

Picture
Once purchased, you can login to the account and launch the SSL certificate setup as shown below:
Picture
For this article, I have already used the Exchange2013 EAC to request for a new certificate. The certificate request contains the necessary Common Name (Subject Name) and Subject Alternate Names (SANs) which in this case would be mail.domain.com and autodiscover.domain.com. After saving the certificate request, open it using notepad and copy all the contents:
Picture
At the 1st step of the SSL launch wizard, choose the second option and paste the cert request into the box as shown below. Ensure "SHA-1" is the signature algorithm and click Next.
Picture
You should now see the CN and SANs listed in the next step of the wizard. If the names are incorrect go back to the Exhange EAC and make sure the cert request is entered properly. Click Next to proceed
Picture
Now the wizard is complete and we should see this page below:
Picture
At this stage, the certificate request has been submitted and GoDaddy will seek approval from the administrator of the DNS domain that the cert belongs to. Until then the cert will be shown as pending:
Picture
Once the DNS Admin approves the certificate request, GoDaddy will issue the certificate and inform you via email that the certificate has been issued:
Picture
Returning to the GoDaddy portal, we can now download the certificate from the accounts page. For this cert we select Exchange2010 as the server type even though we are using it for TMG2010 and Exchange 2013 in the backend:
Picture
Now that we have the cert from GoDaddy we can go back to the Exchange EAC to complete the certificate request. On the EAC select the pending cert and click on "Complete":
EAC will prompt for the certificate which we simply specify in the shared folder which contains the .crt file issued by GoDaddy:
Picture
The certificate will now be shown as "Valid" status. Next we want to export the certificate for use in TMG so back on the EAC, select the certificate and choose "Export certificate" from the menu. EAC will prompt for a shared folder location to place the certificate along with a password to protect it since we are exporting the private key as well:
Picture
At this stage, the certificate is ready to be copied into the TMG server for assigning to a listener. For the remaining steps on how to publish Exchange 2013 using TMG2010, look at this blog post http://blogs.technet.com/b/exchange/archive/2012/11/21/publishing-exchange-server-2013-using-tmg.aspx 
0 Comments

Your comment will be posted after it is approved.


Leave a Reply.

    UCPrimer

    Picture
    Picture
    Picture
    View my profile on LinkedIn

    Important Links

    Microsoft Teams Docs
    Microsoft Learn

    ​Microsoft MVP Blogs

    Michael Tressler’s Blog
    Michael’s MTR Quick Tip Videos
    Jimmy Vaughan’s Blog
    Jeff Schertz
    Adam Jacobs
    James Cussen
    ​Damien Margaritis

    Archives

    March 2025
    February 2025
    January 2025
    December 2024
    November 2024
    October 2024
    August 2024
    July 2024
    May 2024
    April 2024
    March 2024
    February 2024
    December 2023
    November 2023
    October 2023
    September 2023
    July 2023
    March 2023
    February 2023
    January 2023
    November 2022
    October 2022
    September 2022
    August 2022
    July 2022
    March 2022
    February 2022
    January 2022
    December 2021
    November 2021
    October 2021
    September 2021
    August 2021
    June 2021
    April 2021
    March 2021
    December 2020
    October 2020
    September 2020
    August 2020
    April 2020
    March 2020
    February 2020
    January 2020
    December 2019
    November 2019
    October 2019
    September 2019
    August 2019
    July 2019
    March 2019
    November 2018
    October 2018
    September 2018
    August 2018
    June 2018
    March 2018
    February 2018
    January 2018
    December 2017
    November 2017
    August 2017
    July 2017
    April 2017
    March 2017
    February 2017
    January 2017
    November 2016
    October 2016
    September 2016
    August 2016
    July 2016
    June 2016
    May 2016
    April 2016
    March 2016
    January 2016
    November 2015
    October 2015
    September 2015
    August 2015
    July 2015
    June 2015
    May 2015
    April 2015
    March 2015
    February 2015
    January 2015
    December 2014
    November 2014
    October 2014
    September 2014
    August 2014
    July 2014
    June 2014
    May 2014
    April 2014
    March 2014
    February 2014
    January 2014
    December 2013
    November 2013
    October 2013
    September 2013
    August 2013
    July 2013
    June 2013
    May 2013
    April 2013
    March 2013
    February 2013
    January 2013
    December 2012
    November 2012
    September 2012
    August 2012

    Categories

    All
    Edge
    Exchange 2013
    Hybrid
    Lpe
    Lync 2010
    Lync 2013
    Mobility
    Oauth
    Office365
    Polycom
    Ucs

    RSS Feed

    This website uses marketing and tracking technologies. Opting out of this will opt you out of all cookies, except for those needed to run the website. Note that some products may not work as well without tracking cookies.

    Opt Out of Cookies