SAN Certificate


For creating San certificate, first we need to have a Certification Authority Server..Install Certificate Authority server on Domain controller
From roles select the service and install it…After installing the certification Authority, Go to the group management Policy, Under the domain select the Default domain policy
Go to the settings tab on the right side…And right click computer configuration and edit, You will get Group Policy Management Editor
Inside the Computer Configuration, Extract –> Windows Settings –> Security Settings –>Public Key Policies.
Select Certificate Services Client enabled the configuration model,  Certificate Services Client -Certificate Enrollment Policy. ….and do the same method for User Configuration also,

After that go to the Hub and Client Access servers open Exchange Management console
Exchange 2010 EMC server configuration page

Under Server configuration select Hub and Client access Server on the left hand side
You can see “New Exchange Certificate”

First enter the domain name, and then uncheck the “Enable wildcard Certificate”

Follow the screen as it is……… this screens are generated on my lest lab.

(all the names used here are fake and it is just for testing purpose only)

After this go the Certification Authority server and open the browser and type
//server name/certsrv/

After creating .cer file and copy this file to Hub and Client access server,  go to Exchange mangement console ->server configuration
Under Server configuration select Hub and Client acces server and on the right hand side select “Pending Certificate request” and install it on Exchange 

After that “Assign Services to certificate”

Assign Services to certificate

Assign Services to certificate Assign Services to certificate


After compleating the task you can see it like below


1 thought on “SAN Certificate

  1. Pingback: Exchange server 2010 – SAN certificate creation for autodiscover,EWS and OWA etc…! « PREMNAIR'S Blog

Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s