{"id":504,"date":"2017-01-28T18:30:56","date_gmt":"2017-01-28T18:30:56","guid":{"rendered":"https:\/\/www.xsofthost.com\/help\/?p=504"},"modified":"2017-02-11T18:34:47","modified_gmt":"2017-02-11T18:34:47","slug":"how-to-install-geotrust-ssl-certificate-for-microsoft-exchange-2010","status":"publish","type":"post","link":"https:\/\/www.xsofthost.com\/help\/how-to-install-geotrust-ssl-certificate-for-microsoft-exchange-2010\/","title":{"rendered":"Install Geotrust SSL certificate for Microsoft Exchange 2010"},"content":{"rendered":"<div class=\"itemtext internalpadding \">\n<h2 class=\"h3\">To install a Geotrust SSL certificate on Microsoft Exchange 2010 server, follow these steps:<\/h2>\n<ol>\n<li>Obtain the Geotrust Intermediate CA bundle From <em>GeoTrust<\/em> Links bellow depends on your certificate:\n<div class=\"padding10x\">\n<ul>\n<li><a title=\"Geotrust QuickSSL CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/Geotrust_QuickSSL___QuickSSL_Premium_CA_bundle.p7b\">QuickSSL <\/a><\/li>\n<li><a title=\"QuickSSL Premium  CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/Geotrust_QuickSSL___QuickSSL_Premium_CA_bundle.p7b\">QuickSSL Premium <\/a><\/li>\n<li><a title=\"Geotrust GeoTrust True BusinessID CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/GT_True_BusinessID_and_Enterprise_SSL_Intermediate_bundle.p7b\">GeoTrust True BusinessID <\/a><\/li>\n<li><a title=\"Geotrust GeoTrust True BusinessID Wildcard CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/GT_True_BusinessID_and_Enterprise_SSL_Intermediate_bundle.p7b\">GeoTrust True BusinessID Wildcard <\/a><\/li>\n<li><a title=\"Geotrust Enterprise SSL CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/GT_True_BusinessID_and_Enterprise_SSL_Intermediate_bundle.p7b\">Enterprise SSL <\/a><\/li>\n<li><a title=\"Geotrust SSL Wildcard CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/GT_True_BusinessID_and_Enterprise_SSL_Intermediate_bundle.p7b\">Enterprise SSL Wildcard <\/a><\/li>\n<li><a title=\"GeoTrust True BusinessID with EV CA bundle\" href=\"https:\/\/knowledge.geotrust.com\/library\/VERISIGN\/ALL_OTHER\/geotrust%20ca\/tbizidev_pkcs7.p7b\">GeoTrust True BusinessID with EV <\/a><\/li>\n<\/ul>\n<\/div>\n<\/li>\n<li>\n<p>Add the Certificates Snap-in to the Microsoft Management Console (MMC):<\/p>\n<div class=\"padding10x\">\n<ol>\n<li>From the Web server, click <strong>Start<\/strong><\/li>\n<li><strong> type mmc<\/strong> In the Search programs and files field<\/li>\n<li><strong>click mmc.exe<\/strong> From the Programs list result<\/li>\n<li>for the administration permission prompt, click Yes<\/li>\n<li>From the Microsoft Management Console (MMC), click File &gt;&gt; <strong>Add\/Remove Snap-in<\/strong><\/li>\n<li><strong>select Certificates<\/strong> From the list of snap-ins<\/li>\n<li>Click Add and Select Computer account<\/li>\n<li>Click Next<\/li>\n<li>Select Local computer<\/li>\n<li>Click Finish<\/li>\n<li>In the Add\/Remove Snap-in window, click OK<\/li>\n<li>Then save these console settings for future use<\/li>\n<\/ol>\n<\/div>\n<\/li>\n<li>\n<p>Now we will install the Geotrust Intermediate CA bundle<\/p>\n<div class=\"padding10x\">\n<ol>\n<li>Using the same Console, double-click on <strong>Intermediate Certification Authorities <\/strong>from the right pane<\/li>\n<li>Right click on Certificates from the right pane and select All Tasks &gt;&gt; Import to open the Certificate Import Wizard and Click Next<\/li>\n<li>Specify the location of the Geotrust intermediate file obtained from Step 1 by clicking Browse and Click Next<\/li>\n<li>By default, it will place the certificate in the Intermediate Certification Authorities store. Keep this selection and click on the Next button.<\/li>\n<li>Then Click Finish<\/li>\n<li>A message will appear confirming the successful import of the certificate. Click OK<\/li>\n<\/ol>\n<\/div>\n<\/li>\n<li>\n<p>Locate and Disable the Geotrust self signed Root CA<\/p>\n<div class=\"text-justify BlockColDesc\"><strong>Note<\/strong>: For QuickSSL, QuickSSL Premium, GeoTrust True BusinessID, GeoTrust True BusinessID Wildcard, Enterprise SSL, Enterprise SSL Wildcard locate the below root.<\/p>\n<ol>\n<li>Using the same Console, expand the <strong>Trusted Root Certification Authorities <\/strong>folder on the left and select the Certificates sub-folder.<\/li>\n<li>Locate the following certificate:\n<div class=\"padding10x\">\n<p class=\"bold\">Issued to: Geotrust Global CA<\/p>\n<p class=\"bold\">Issued by: Geotrust Global CA<\/p>\n<p class=\"bold\">Valid from: 5\/20\/2002 to 5\/20\/2022<\/p>\n<p class=\"bold\">Serial number: 02 34 56<\/p>\n<p>&nbsp;<\/p>\n<\/div>\n<\/li>\n<li>If this certificate is present, it must be disabled. Right click the certificate, select Properties.<\/li>\n<li>In the Certificate purposes section, select Disable all purposes for this certificate, then click OK.<\/li>\n<li>Close the MMC console, there is no need to save the console settings<\/li>\n<\/ol>\n<\/div>\n<div class=\"text-justify BlockColDesc\">\n<p class=\"bold\">Note : For GeoTrust True BusinessID with EV locate the below root<\/p>\n<ol>\n<li>Using the same Console, expand the<strong> Trusted Root Certification Authorities <\/strong>folder on the left and select the Certificates sub-folder..<\/li>\n<li>Locate the following certificate:\n<div class=\"padding10x\">\n<p class=\"bold\">Issued to: Geotrust Primary Certification Authority<\/p>\n<p class=\"bold\">Issued by: Geotrust Primary Certification Authority<\/p>\n<p class=\"bold\">Valid from: 11\/26\/2006 to 7\/16\/2036<\/p>\n<p class=\"bold\">Serial number: 18 ac b5 6a fd 69 b6 15 3a 63 6c af da fa c4 a1<\/p>\n<p>&nbsp;<\/p>\n<\/div>\n<\/li>\n<\/ol>\n<\/div>\n<\/li>\n<li>\n<p>Install the SSL certificate<\/p>\n<div>Geotrust will send the SSL certificate via email. Using a plain text editor such as Notepad, paste the content of the certificate. The text file should look like:<\/div>\n<div class=\"padding10x\">\n<p>&#8212;&#8211;BEGIN CERTIFICATE&#8212;&#8211;<\/p>\n<p>[encoded data]<\/p>\n<p>&#8212;&#8211;END CERTIFICATE&#8212;&#8211;<\/p>\n<\/div>\n<div><strong>Note<\/strong>: Make sure there are 5 dashes to either side of the BEGIN CERTIFICATE and END CERTIFICATE and that no white space, extra line breaks or additional characters have been inadvertently added. Save the file with the extension of .cer.<\/div>\n<p>Installing the certificate with the Exchange Management Console:<\/p>\n<ol>\n<li>Start the Exchange Management Console: <strong>Start &gt;&gt; Programs &gt;&gt; Microsoft Exchange 2010 &gt;&gt; Exchange Management Console<\/strong><\/li>\n<li>Select <strong>&#8220;Manage Databases&#8221;<\/strong>, and then select <strong>&#8220;Server configuration&#8221;<\/strong><\/li>\n<li>\n<p>Select the certificate from the center menu (listed by its Friendly Name), and then select <strong>&#8220;Complete Pending Request&#8221;<\/strong> from the &#8220;Actions&#8221; menu.<\/p>\n<p><a class=\"lightbox-image-link\" title=\"SSL Exchange Complete Pending Request.\" href=\"https:\/\/www.xsofthost.com\/knowledgebase\/ssl-exchnage-server-Complete-Pending-Request.jpg\" data-lightbox=\"roadtrip\" rel=\"lightbox[504]\"><br \/>\n <img loading=\"lazy\" class=\"thumbnail\" src=\"https:\/\/www.xsofthost.com\/knowledgebase\/ssl-exchnage-server-Complete-Pending-Request.jpg\" alt=\"SSL Exchange Complete Pending Request\" width=\"250\" height=\"125\" \/><br \/>\n <\/a><\/p>\n<\/li>\n<li>Browse to the certificate file, then select Open &gt; Complete\n<p><strong>Note<\/strong>: Occasionally Exchange 2010 will show an error message stating that &#8220;The source data is corrupted or not properly Base64 encoded.&#8221; Please ignore that error, even though it occurs the certificate often still installs correctly.<\/p>\n<p>Press the F5 key to refresh the certificate and verify that it now says &#8220;False&#8221; under &#8220;Self Signed&#8221;. If it still shows &#8220;True&#8221;, the wrong certificate may have been selected or the request may have been generated on a different server. To resolve this issue, create a new CSR on this Exchange server and reissue the certificate.<\/p>\n<\/li>\n<li>\n<p>To enable the certificate, go back to the Exchange Management Console and click the link to &#8220;Assign Services to Certificate&#8221;<\/p>\n<p><a class=\"lightbox-image-link\" title=\"SSL Exchange Assign Services to Certificate.\" href=\"https:\/\/www.xsofthost.com\/knowledgebase\/ssl-exchnage-Assign-Services-to-Certificate.jpg\" data-lightbox=\"roadtrip\" rel=\"lightbox[504]\"><br \/>\n <img loading=\"lazy\" class=\"thumbnail\" src=\"https:\/\/www.xsofthost.com\/knowledgebase\/ssl-exchnage-Assign-Services-to-Certificate.jpg\" alt=\"SSL Exchange Assign Services to Certificate\" width=\"250\" height=\"125\" \/><br \/>\n <\/a><\/p>\n<\/li>\n<li>Select the server from the list provided, then click Next<\/li>\n<li>Select the services for which the certificate must be enabled then click Next &gt; Assign &gt; Finish<\/li>\n<li>The certificate is now Installed and Enabled for use with Exchange.<\/li>\n<\/ol>\n<\/li>\n<\/ol>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>To install a Geotrust SSL certificate on Microsoft Exchange 2010 server, follow these steps: Obtain the Geotrust Intermediate CA bundle From GeoTrust Links bellow depends on your certificate: QuickSSL QuickSSL Premium GeoTrust True BusinessID GeoTrust True BusinessID Wildcard Enterprise SSL Enterprise SSL Wildcard GeoTrust True BusinessID with EV Add the Certificates Snap-in to the Microsoft [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":500,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[43],"tags":[97,96,72],"_links":{"self":[{"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/posts\/504"}],"collection":[{"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/comments?post=504"}],"version-history":[{"count":1,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/posts\/504\/revisions"}],"predecessor-version":[{"id":505,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/posts\/504\/revisions\/505"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/media\/500"}],"wp:attachment":[{"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/media?parent=504"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/categories?post=504"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.xsofthost.com\/help\/wp-json\/wp\/v2\/tags?post=504"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}