Score:2

Update SSL certificate on Exchange 2016 without new request

cn flag
TSG

I purchased a multi-year certificate (from Godaddy) for my exchange 2016 in 2020. They sent me the first (1 year) cert, which will expire soon, in response to my original request generated in the ECP. I understand that certs cannot extend beyond 1 year now.

Now, GoDaddy sent me a new cert to replace the old one ( I did not have to request it). However, there is no open request. How do I install the new cert without an open request in the ECP?

I tried clicking RENEW and providing this new cert as the response, but ECP complains that a certificate with that thumbprint already exists.

How do I proceed? (GoDaddy is no help - they tell me to contact Microsoft). Shouldn't I have to send the CA (GoDaddy) a new request before they can send me a cert? Or is there some other way to install the updated certificate?

Score:2
cn flag

If updated certificate has same public key (I bet it is the case), then install that public certificate in LocaL Machine\Personal, then run the following command in elevated command prompt:

certutil -repairstore my "ab cd ef"

where ab cd ef is the serial number of renewed certificate. Replace this string with actual serial number. The command will bind/associate this certificate with existing private key. Then you can go Exchange management shell and change the certificate.

TSG avatar
cn flag
TSG
I completed steps above, and now am ready to associated cert via management shell. However, can't do that until Dec 15 (since cert says not valid before Dec 15) - so will come back to accept answer in 30 days
mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.