UCC Certificates on multiple servers

Soldato
Joined
4 Mar 2003
Posts
12,510
Location
Chatteris
I'm not too sure about this rea - so I thought I'd throw it open to the experts here.

We are currently in the process of updaing from Exchange 2003 to Exchange 2010.
We will have 2 Exchange 2010 servers in a DAG here in the UK, alongside our existing Exchange 2003 server.
In china and Sweden we will initially continue using Exchange 2003 and eventually they will get the new Exchange 2010 servers.

I have purchased a UCC certificate which covers the names of:

Current UK 2003 Server
New UK 2010 Server 1
New UK 2010 Server 2
Autidiscover
mail
Current Sweden 2003 Server
New Sweden 2010 Server
Current China 2003 Server
New China 2003 Server

We generated a certificate request file from the first of our new Exchange 2010 servers and this was used to generate our certificate.

Now to the question - how do I go about installing this certificate on all of the other machines?
If I generate a request from the other servers I'm assuming they will not accept the certificate generated via the request from the first server.

Is there a way to simply install the certificate onto the other machines without the need to first generate a request?
Of will the servers accept this certificate even though it wasn't generate from their request file?

Hope that all makes sense :)
 
Why do you need to generate a request for each new server? You just need the private key and the certificate installed. So you just need to copy the private key and cert from the first server. Then bob's your uncle. :o

That's how we do wildcard SSL, in any case.
 
Why do you need to generate a request for each new server? You just need the private key and the certificate installed. So you just need to copy the private key and cert from the first server. Then bob's your uncle. :o

That's how we do wildcard SSL, in any case.

Is that all there is to it?
Copy the root key and certificate to each server - no need to generate requests?

Excellent!
 
Also don't forget that in using public CA's you may need to purchase one cert per server (we use entrust for our exchange servers and they license them that way)
 
Back
Top Bottom