IMAP setup and Exchange SMTP default self-signed certificate overwrite

BK IT Staff 246 Reputation points
2023-01-05T15:16:12.767+00:00

Hi, as an EAS "backup" connectivity protocol I need to enable IMAP for my user's mobile devices. Lately I have some problems with EAS and MS support is digging into them. In the meanwhile I want to give a reliable and working alternative to my users.
The official procedure (https://video2.skills-academy.com/en-us/exchange/clients/pop3-and-imap4/configure-imap4?view=exchserver-2016) consists of:

  • to enable imap services
  • set imap settings (fqdn and connectivity bindings/protocols)
  • Configure the authenticated SMTP settings for internal and external clients since, when you enable imap to read emails, you must also provide a valid smtp server to be able to send emails as well. Unless you have some 3rd party smtp server to relay on (your ISP for example). This step consists of overwriting the default Exchange self-signed certificate.

The fact is that by reading technical articles (for example https://blog.rmilne.ca/2021/04/26/should-i-overwrite-the-default-exchange-smtp-certificate/ - ), they state that the default self-signed smtp exchange certificate should not be overwritten. . My guess is that I should replace the default Exchange self-signed certificate for my goal, otherwise the subject name in the certificate does not match the dns name set in the imap settings.
But I am concerned about the fact that the default Exchange self-signed certificate is also used to encrypt SMTP communication between internal Exchange servers.
Is not that, by repalcing the default Exchange self-signed certificate, something gets broken? Is the official MS procedure linked above safe or is there something that should I be made aware of before continuing on this way?
Thank you,
Francesco

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,173 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,468 questions
0 comments No comments
{count} votes

Accepted answer
  1. Aholic Liang-MSFT 13,826 Reputation points Microsoft Vendor
    2023-01-06T06:16:25.19+00:00

    Hi @BK IT Staff ,
    Thank you for the relevant reference documentation!
    According to my research on both, these are two articles about different focuses.
    This blog is mainly about whether to replace SMTP certificates with third-party certificates. This is not the same thing as you need to enable IMAP4.
    About how to enable IMAP service, you can refer to the official documentation directly.


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    1 person found this answer helpful.
    0 comments No comments

0 additional answers

Sort by: Most helpful