Hi,
This is something I have never been able to understand fully.
OK.
You install exchange server 2013, configure it and obtain a digital certificate for it.
Normally in my installations I have:
Common name = mail.domain.com
Subject Alternate names: autodiscover.domain.com, domain.com(this is added automatically by the CA even if you do not specify it). In many cases domain.com points to the IP address of the business web server(ie shared linux hosting with the hosting
provider digital certificate)
Then I configure external DNS to use A records to point to the public IP address of my mail server for mail.domain.com, autodiscover.domain.com
Internally I use split DNS and configure DNS with the same records, but to point to my internal IP address of my mail server.
When I setup Outlook clients internally (Outlook Anywhere is setup) I have no problems autoconfiguring. With external configuring (when the user is outside the office) it will prompt me with the domain\username combo(It think I can fix this by setting the
UPN same as the email address)
But when I setup iphones or Androids, it does not autoconfigure. It stops at the screen asking for the mail server hostname.
Normally the hostname is domain.com instead of mail.domain.com. The reason, I believe, is because domain.com points to the webserver which has a different digital certificate provided by the hosting provider.
When I run exchange connectivity analyzer, it complains that domain.com is not in the SAN list, which I can understand because domain.com is pointing to a webserver with the hosting provider.
How can I set this up in a way that mobile device setup will fetch the correct hostname and autoconfiguration is not interrupted?
I know I can manually configure it myself, but I want it to be fool proof for the end user.
Thanks in advance.
Best regards
Alfred56