<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://192.168.2.20/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx</link><description>This is another question I was recently asked. One particular user noticed that the certificate they saw when accessing their server from the internet did not match that when accessing from the LAN. The certificate looked something like this: This was</description><dc:language>en</dc:language><generator>CommunityServer 2008.5 SP2 (Build: 40407.4157)</generator><item><title>re: Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx#7830</link><pubDate>Tue, 13 Jan 2009 22:12:55 GMT</pubDate><guid isPermaLink="false">72050d9c-4f41-4a16-9f70-ebbf2c98a2c7:7830</guid><dc:creator>Mark</dc:creator><description>&lt;p&gt;Thanks,&lt;/p&gt;
&lt;p&gt;I re-ran the &amp;quot;setup your internet address&amp;quot; wiz, intered the public FQDN I assigned to the IP, and then it finished. &amp;nbsp;I checked my recipient policies, and it modified the policy, but modified it correctly, and got rid of the &amp;#39;localdomain.local&amp;#39; address, which I didn&amp;#39;t need anyway. &amp;nbsp;I then re-ran the &amp;#39;fix my network&amp;#39; wizard expecting it to re-create the certificate install package in the public\downloads folder, but it didn&amp;#39;t. &amp;nbsp;I tried installing the package anyway, and it worked. &amp;nbsp;I&amp;#39;m not sure why I&amp;#39;m not finding a cert, or installation package with a new date, but it&amp;#39;s working. &amp;nbsp;&lt;/p&gt;
&lt;p&gt;Thanks for the help.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://192.168.2.20/aggbug.aspx?PostID=7830" width="1" height="1"&gt;</description></item><item><title>re: Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx#7825</link><pubDate>Mon, 12 Jan 2009 23:42:28 GMT</pubDate><guid isPermaLink="false">72050d9c-4f41-4a16-9f70-ebbf2c98a2c7:7825</guid><dc:creator>David Overton</dc:creator><description>&lt;p&gt;Mark,&lt;/p&gt;
&lt;p&gt;re-run the wizard - I ran it about 15 times this weekend. &amp;nbsp;It will re-create your cert for you. &amp;nbsp;Also, when you get to the &amp;quot;domain name&amp;quot; section, there is an advanced button that describes your &amp;quot;remote&amp;quot; name.&lt;/p&gt;
&lt;p&gt;Thanks&lt;/p&gt;
&lt;p&gt;David&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://192.168.2.20/aggbug.aspx?PostID=7825" width="1" height="1"&gt;</description></item><item><title>re: Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx#7824</link><pubDate>Mon, 12 Jan 2009 23:24:46 GMT</pubDate><guid isPermaLink="false">72050d9c-4f41-4a16-9f70-ebbf2c98a2c7:7824</guid><dc:creator>Mark</dc:creator><description>&lt;p&gt;I&amp;#39;ve setup a name for my IP, but I still can&amp;#39;t find anywhere how to create a new cert in 2008 SBS. &amp;nbsp;If I run the &amp;quot;add a trusted cert&amp;quot; wiz, it asks if I want to buy one, or use an existing one. &amp;nbsp;I don&amp;#39;t want to buy one, but want to have my server re-create one with the correct name. (remote.pubdomain.com instead of remote.localdomain.local) &amp;nbsp;&lt;/p&gt;
&lt;p&gt;I see that if I run the &amp;quot;setup your Internet Address&amp;quot; wiz, I can re-enter my domain name, and this might be where I&amp;#39;d put in the public FQDN, but I&amp;#39;m afraid this might screw with who-knows-what other configurations. &amp;nbsp;I was very comfortable re-running CEICW in 2003 and changing the name to an IP, and this is all it fixed. &amp;nbsp;I ran the &amp;quot;fix your network&amp;quot; here in 2008, - it just ran.. ran.. and finished, and it screwed with my recipient policies! &amp;nbsp;So 2008 wizards are still a little scary to me.&lt;/p&gt;
&lt;p&gt;Thanks for the previous response, and any other advice.&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://192.168.2.20/aggbug.aspx?PostID=7824" width="1" height="1"&gt;</description></item><item><title>re: Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx#7756</link><pubDate>Tue, 06 Jan 2009 22:19:19 GMT</pubDate><guid isPermaLink="false">72050d9c-4f41-4a16-9f70-ebbf2c98a2c7:7756</guid><dc:creator>David Overton</dc:creator><description>&lt;p&gt;Mark,&lt;/p&gt;
&lt;p&gt;the self-issued certificate that SBS uses can be found at \\&amp;lt;yourserver&amp;gt;\public\public downloads - you should see a zip and directory with the self-signed certificate. &amp;nbsp;If you use an IP address then it may not work both inside and outside your network - better to use a name. &amp;nbsp;So uninstall the old cert, install the newly created self-signed certificate and away you go.&lt;/p&gt;
&lt;p&gt;So, my advice, buy a domain, register it and use a dynamic dns service if required (if you don&amp;#39;t have a fixed IP address) otherwise e-mail can&amp;#39;t come in and the certs will fail.&lt;/p&gt;
&lt;p&gt;Thanks&lt;/p&gt;
&lt;p&gt;David&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://192.168.2.20/aggbug.aspx?PostID=7756" width="1" height="1"&gt;</description></item><item><title>re: Invalid certificate issued to localhost.localdomain when remotely access SBS 2008 from a Windows PC</title><link>http://192.168.2.20/blogs/doverton/archive/2008/12/03/windows-machines-connecting-to-sbs-2008-see-an-invalid-certificate-issues-to-localhost-localdomain.aspx#7751</link><pubDate>Tue, 06 Jan 2009 16:28:30 GMT</pubDate><guid isPermaLink="false">72050d9c-4f41-4a16-9f70-ebbf2c98a2c7:7751</guid><dc:creator>mark</dc:creator><description>&lt;p&gt;Thanks for the info, but you say you had to &amp;quot;install the correct new certificate&amp;quot;. &amp;nbsp;I don&amp;#39;t want to buy a cert, so how do I have the server create a new certificate? &amp;nbsp;I guess I need a cert with the IP address in the name since I&amp;#39;ll be using the IP to get to RWW? &amp;nbsp;Or am I off track?&lt;/p&gt;
&lt;div style="clear:both;"&gt;&lt;/div&gt;&lt;img src="http://192.168.2.20/aggbug.aspx?PostID=7751" width="1" height="1"&gt;</description></item></channel></rss>