Generating CSR – MS Exchange Server 2013

NOTE; We recommend that you use a Multiple Domain Unified Communications (UCC) SAN SSL Certificates with your Microsoft Exchange Server, since you probably need to secure more than just one domain name.

  • Log in to the Exchange Admin Center.
  • From the left menu, select Servers, and then click Certificates.
  • Click + to start the Exchange Certificate wizard.
  • Select Create a request for a certificate from a certification authority, and then click Next.
  • Enter a friendly name to identify this certificate, and then click Next.
  • If your CSR is for a wildcard certificate, select Request a wildcard certificate, enter the root domain name, and then click Next. Otherwise, click Next without selecting or entering anything.
  • For Store certificate request on this server, click Browse, select a server to store the pending certificate request, click OK, and then click Next.
  • Select an Access type (such as Outlook Web App or OWA), click Edit (pencil icon), enter the domain name that clients will use to connect to it, and then click OK. If necessary, repeat the process to secure additional services, and then click Next.

    NOTE: To select services, you must know exactly how your server is configured. If you want multiple services to use the same domain name (for example, if OWA, OAB, and EWS all use, you only have to enter the domain name for one of the services. Click Delete (trash icon) to remove any domain names that the SSL certificate doesn’t cover.

  • Select and/or add the domain names (also known as Subject Alternative Names or SANs) that you will use to reference or connect to your Exchange server, and then click Next.
  • Add your organization’s information, and then click Next:
    • Organization name — Enter the full legal name of your company or organization.
    • Department name — Enter the organization within the company (such as IT Department) responsible for the certificate.
    • Country/Region name — Select the country where the organization is legally registered.
    • City/Locality — Enter the full name of the city where your organization is registered.
    • State/Province — Enter the full name of the state or province where your organization is registered. If you do not have a state or province, enter your city information.
  • Enter a valid path (such as \\myserver\admin\csr.req) to save your CSR on your computer, and then Finish. Your pending certificate request displays in the Exchange Admin Center.
  • NOT; Save (backup) the generated .key file (private-key) as it will be required later for Certificate installation. If you somehow loose or delete this .key file, your SSL certificate will not work. Because this .key file and SSL certificate which will be produced will work as a pair.

Customer Services 0850 222 444 6