
These certificates are issued by a third party and trusted vendor.

For non domain joined clients and Windows Mobile devices you must still import the trusted root certificate in your workstations or Windows Mobile certificate store. You can configure your Windows 2008 Certificate Authority to issue Unified Communications certificates by entering the following command on a command prompt:Ĭertutil -setreg policy\EditFlags +EDITF_ATTRIBUTESUBJECTALTNAME2ĭomain joined clients will automatically trust the certificates issued by the Windows CA in your domain.
#Exchange 2010 self signed certificate install
But, you have to be careful installing your own PKI since it gives some constraints on your Active Directory, especially when you decide to install it on a Domain Controller. Windows CA – You can install your own Certificate Authority (CA) as part of a Public Key Infrastructure, you can install a PKI using the Add/Remove programs option in the Control Panel.Outlook Anywhere doesn't work with Self Signed certificates. Since these certificates are not trusted by the workstation running your browser or the Windows Mobile device you have to copy the certificate to the certificate store manually.

Outlook Web App (OWA) en Exchange Activesync (on Windows Mobile devices) can work with Self Signed Certificates. Self Signed Certificates – These are certificated generated by the Exchange Server itself during the actual installation of the Exchange Server 2010 Client Access Server.

Exchange Server 2010 uses SSL certificates for securing HTTP connections.
