After the Exchange Server is installed, the system prompts a certificate error when we access the server through "https: // server IP/OWA" and the OWA method. Select "continue to browse the website ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/94/wKiom1QVmbCBgtZAAACY8gMuIF0846.png "Title =" capture a. PNG "alt =" wkiom1qvmbcbgtzaaacy8gmuif0846.png "/>
At this time, we can see that although the OWA interface is entered, the "Certificate error" is still prompted; this is because the newly installed exchange uses a self-signed certificate, it is not a certificate in the domain;
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/94/wKiom1QVmhnC7GDrAAC9GNMf0hQ000.png "Title =" Capture B. PNG "alt =" wkiom1qvmhnc7gdraac9gnmf0hq000.png "/>
Therefore, after installing exchange, we must first install the Certificate Service (Active Directory Certificate Service (adca). If there is already a Certificate Service in the environment, skip the step of installing the Certificate Service;
Because our certificates need to be issued through Web, we need to install the IIS service;
IIS Installation
1. Open the Server Manager and select "add role ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/94/wKiom1QVm6vCsXD4AADDS05PUzc628.png "Title =" Capture 1.png" alt = "wkiom1qvm6vcsxd4aadds05puzc628.png"/>
2. Select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/96/wKioL1QVm-Xg0YYFAABW1YT-zzA976.png "Title =" Capture 2.png" alt = "wKioL1QVm-Xg0YYFAABW1YT-zzA976.png"/>
3. Check "Web Server (IIS)" and select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/94/wKiom1QVnHDy5WoHAABrZ6vjpWw255.png "Title =" Capture 3.png" alt = "wkiom1qvnhdy5wohaabrz6vjpww255.png"/>
4. Select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/96/wKioL1QVnLOg-EelAAB1iANENGA318.png "Title =" Capture 4.png" alt = "wKioL1QVnLOg-EelAAB1iANENGA318.png"/>
5. Select "Next" by default ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M00/49/96/wKioL1QVnMqxBeV4AAB4BiW5lBc175.png "Title =" Capture 5.png" alt = "wkiol1qvnmqxbev4aab4biw5lbc175.png"/>
6. Select "Install ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M00/49/94/wKiom1QVnPXRo6O0AABlXtvzo7s862.png "Title =" Capture 6.png" alt = "wkiom1qvnpxro6o0aablxtvzo7s862.png"/>
7. Installation in progress;
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/94/wKiom1QVnOKD6kIKAABMUb33co8623.png "Title =" Capture 7.png" alt = "wkiom1qvnokd6kikaabmub33co8623.png"/>
8. After the installation is complete, select "close ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/96/wKioL1QVnTyihRwDAABXKhHFOdU959.png "Title =" Capture 8.png" alt = "wkiol1qvntyihrwdaabxkhhfodu959.png"/>
After IIS is installed, the certificate server should be installed below;
Install the Active Directory Certificate Server
9. Start with "Server Manager-add role" and select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/96/wKioL1QVnYyzhYfxAABS5n_hBZU787.png "Title =" Capture 9.png" alt = "wkiol1qvnyyzhyfxaabs5n_hbzu787.png"/>
10. Check "Active Directory Certificate Server" and select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M00/49/96/wKioL1QVnkuiLm9kAABz4JJlRbo732.png "Title =" Capture 10.png" alt = "wkiol1qvnkuilm9kaabz4jjlrbo732.png"/>
11. Select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/96/wKioL1QVnozQ6GjzAABlcT5XsXo284.png "Title =" Capture 11.png" alt = "wkiol1qvnozq6gjzaablct5xsxo284.png"/>
12. The "Certificate Authority" is selected by default. You must also select "Certificate Authority web registration" here "; in the displayed "add role wizard" dialog box, select "add desired role service", and then select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/94/wKiom1QVnpPiARcSAACFuVGY6gs219.png "Title =" Capture 12.png" alt = "wkiom1qvnppiarcsaacfuvgy6gs219.png"/>
13. Select "enterprise" and "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/96/wKioL1QVnx2i0FVnAABZK3cLXxA613.png "Title =" Capture 13.png" alt = "wkiol1qvnx2i0fvnaabzk3clxxa613.png"/>
14. Select "Root CA" and select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M01/49/94/wKiom1QVoOvictlEAABb9Bo60-I049.png "Title =" Capture 14.png" alt = "wKiom1QVoOvictlEAABb9Bo60-I049.png"/>
15. Select "new private key" and select "Next ";
650) This. width = 650; "src =" http://s3.51cto.com/wyfs02/M02/49/94/wKiom1QVoOCAwMCGAAB0-l3awMk067.png "Title =" Capture 15.png" alt = "wKiom1QVoOCAwMCGAAB0-l3awMk067.png"/>
This article is from the "snow" blog, please be sure to keep this source http://yupeizhi.blog.51cto.com/3157367/1552665
Exchange Server 2010 certificate (1)