Renewing SSL on Exchange 2019

Susan Dodds 421 Reputation points
2026-08-14T03:14:20.8433333+00:00

I have a godaddy SSL. I'm doing my first renewal of the certificate.

Do I need to do a certificate request from the Exchange server to make the certificate or can I use the one that godaddy made for me without a certificate request?

The SSL I'm replacing was made with a certificate request from Exchange 2019.

Thanks

Exchange | Exchange Server | Management
Exchange | Exchange Server | Management

The administration and maintenance of Microsoft Exchange Server to ensure secure, reliable, and efficient email and collaboration services across an organization.

0 comments No comments

2 answers

Sort by: Most helpful
  1. Dora-T 635 Reputation points Independent Advisor
    2026-08-14T03:59:36.74+00:00

    Hi @Susan Dodds

    You should create a certificate renewal request from the Exchange server and submit it to GoDaddy.

    For this scenario, please refer to the AI Answer for the recommended certificate renewal process on Exchange Server 2019, as it provides the documented steps for generating a certificate renewal request and completing the renewed certificate on Exchange.

    Additionally, you can find a discussion about a similar Exchange certificate renewal scenario here: Can I renew the Exchange Certificate (SSL) without using a REQ file? - Microsoft Q&A

    If you need further assistance or have any other questions, please feel free to let me know.


    Note: Please follow the steps in the forum documentation to enable e-mail notifications if you want to receive the related email notification for this thread.   

    Was this answer helpful?

    0 comments No comments

  2. AI answer

    2026-08-14T03:14:41.15+00:00

    For an Exchange Server 2019 certificate renewal from a third-party CA, create the certificate request on the Exchange server, then submit that request to GoDaddy.

    A certificate that was originally created from an Exchange certificate request should be renewed by:

    1. Creating a new certificate request in Exchange.
    2. Sending that request to the CA.
    3. Completing the pending certificate request after the CA returns the certificate.
    4. Assigning the certificate to Exchange services.

    Exchange documentation states that New-ExchangeCertificate is used to create certificate requests for new certificates and certificate renewals from a certification authority. The certificate request workflow is also the documented process for configuring a third-party SSL certificate on Exchange.

    If using Exchange Server 2019:

    • EAC certificate management is available in Exchange 2019 CU15 and later.
    • For Exchange 2019 CU12 to CU14, use the Exchange Management Shell.

    After the CA returns the certificate, complete the pending request on the Exchange server, then assign it to services. At minimum, assign it to SMTP and IIS. If prompted to overwrite the existing default SMTP certificate, select Yes.

    To verify the renewal worked in EAC:

    • Go to Servers > Certificates.
    • Select the new certificate.
    • Confirm Status is Valid.
    • Confirm Assigned to services includes at least IIS and SMTP.

    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.