Well its not the 1st time I have changed certificate on Exchange.
Certificate from internal CA is being used. Yeah thats right.. its only intranet exchange environment.
Root Certificate of CA is installed on Exchange servers, CRL is installed, Certificate is installed with mail.domain.com and autodiscover.domain.com.
Certificate has Only IIS service enabled. Rest are not.
What I have noticed is, the default self signed certificate is still have IIS enabled. adding new certificate and associating it with IIS does not clear IIS check mark from self signed.
Is this normal behaviour? I dont think so.
OWA,ECP shows no issues. Outlook sometimes works, and later it through certificate error mentioning the name of Exchange server i.e., ExSrv1.domain.com, when viewing the certificate it show the correct certificate.
But it has been quite a while,...