Exchange 2019 certificate renewal-in hybrid environment

Ibrahim AlHusari 191 Reputation points
2023-02-02T07:00:12.2066667+00:00

Dears,

our SSL certificate will be expired in two weeks, so we renewed it and assigned exchange services as shown below, I have read on some articles that if both certificates old and new are matched then we don’t have to make any other changes on send and receive connector on premise side, please explain more about that part

123456

Regards .

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,173 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,468 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,981 questions
0 comments No comments
{count} votes

Accepted answer
  1. Yuki Sun-MSFT 41,006 Reputation points
    2023-02-03T07:01:17.9866667+00:00

    Hi @Ibrahim AlHusari ,

    I have checked Transport services logs on my send and receive connectors , they were using the new certificate Thumbprint is that enough ?

    That would be enough.

    Actually, based on my understanding, you can just proceed to remove the old certificate, if the connectors are still using the old one, you'll be prompted with the error below and will not be able to remove the old certificate:
    User's image


    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Andy David - MVP 144.4K Reputation points MVP
    2023-02-02T12:26:23.8966667+00:00

    You need to update the transport connectors even if the subject and issuer are the same in the new certificate

    After that remove the old certificate

    You can do so following:

    https://www.alitajran.com/renew-certificate-exchange-hybrid/