The server certificate expires EventID 12018.

Cobion 111 Reputation points
2023-02-21T10:52:58.8533333+00:00

Hello everybody!

Recently installed a DAG cluster of 4 servers. Everything is configured, all certificates have been linked to IIS and SMTP services and to reception connectors for TLS connections - at the same time, a *.WildCard certificate with a certain fingerprint is used.

Now I see a notification in the logs that the certificate for the servers themselves (including the other three) initiates notifications 12018 that the certificate expires on May 4 (as well as the WildCard certificate itself) and everything would be fine, but for some reason the fingerprint of the WildCard certificate on the server itself is completely different.

The actual screen:

ssl

Question: Tell me what this might mean and will it affect the operation of any Exchange services if this certificate is not renewed to the server, or do I misunderstand this information? Or is it that in the event there is a ReceiveConnector TLS Certificate to which the WildCard certificate is attached?

Thanks!

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,173 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,469 questions
Microsoft Exchange
Microsoft Exchange
Microsoft messaging and collaboration software.
446 questions
{count} votes

Accepted answer
  1. Andy David - MVP 144.4K Reputation points MVP
    2023-02-21T12:41:14.0633333+00:00

    Ok, then yes, renew that cert before then, and then enable for SMTP and IIS.

    You can do that following:

    https://video2.skills-academy.com/en-us/exchange/architecture/client-access/renew-certificates?view=exchserver-2019

    then assign to services:

    https://video2.skills-academy.com/en-us/exchange/architecture/client-access/assign-certificates-to-services?view=exchserver-2019

    If prompted to overwrite to existing SMTP Exchange default cert when assigning services, say no.

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Cobion 111 Reputation points
    2023-02-21T12:29:08.4466667+00:00

    Thank you, the question is removed. This is a notification from the server itself - that the WildCard certificate, which is installed on this server, will expire on a certain date.

    0 comments No comments